Stored XSS in b2evolution CMS version 6.11.6 and prior allows an attacker to perform malicious JavaScript code execution via the plugin name input field in the plugin module.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-02-09T13:09:58
Updated: 2024-08-04T14:51:10.875Z
Reserved: 2020-08-13T00:00:00
Link: CVE-2020-22841
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-02-09T14:15:14.950
Modified: 2024-11-21T05:13:26.527
Link: CVE-2020-22841
Redhat
No data.