MetInfo 7.0 beta contains a stored cross-site scripting (XSS) vulnerability in the $name parameter of admin/?n=column&c=index&a=doAddColumn.
References
Link Resource
https://github.com/alixiaowei/cve_test/issues/2 Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-12-22T22:41:06

Updated: 2021-12-22T22:41:06

Reserved: 2020-08-13T00:00:00


Link: CVE-2020-20600

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-12-22T23:15:07.690

Modified: 2021-12-23T19:37:29.313


Link: CVE-2020-20600

JSON object: View

cve-icon Redhat Information

No data.

CWE