A cross-site scripting (XSS) vulnerability in the component install\install.sql of Xiuno BBS 4.0.4 allows attackers to execute arbitrary web scripts or HTML via changing the doctype value to 0.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2021-10-04T21:00:36

Updated: 2024-08-04T14:30:33.427Z

Reserved: 2020-08-13T00:00:00

Link: CVE-2020-21494

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-10-04T21:15:12.387

Modified: 2021-10-13T20:07:19.207

Link: CVE-2020-21494

cve-icon Redhat

No data.