Automated Logic Corporation (ALC) WebCTRL System 6.5 and prior allows remote attackers to execute any JavaScript code via a XSS payload for the first parameter in a GET request.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-02-22T14:43:13

Updated: 2021-02-22T14:43:13

Reserved: 2020-08-13T00:00:00


Link: CVE-2020-19762

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-02-22T15:15:12.163

Modified: 2021-02-26T20:10:17.150


Link: CVE-2020-19762

JSON object: View

cve-icon Redhat Information

No data.

CWE