CVE

CVE-2020-36498

CVE-2020-36498

Macrob7 Macs Framework Content Management System – 1.14f contains a cross-site scripting (XSS) vulnerability in the account reset function, which allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the e-mail input field.

Source: CVE-2020-36498

Exit mobile version