CVE-2020-24860

CVE-2020-24860

CMS Made Simple 2.2.14 allows an authenticated user with access to the Content Manager to edit content and put persistent XSS payload in the affected text fields. The user can get cookies from every authenticated user who visits the website.

Source: CVE-2020-24860

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다