CVE-2020-15051
Summary
| CVE | CVE-2020-15051 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-07-15 21:15:00 UTC |
| Updated | 2020-07-21 14:28:00 UTC |
| Description | An issue was discovered in Artica Proxy before 4.30.000000. Stored XSS exists via the Server Domain Name, Your Email Address, Group Name, MYSQL Server, Database, MYSQL Username, Group Name, and Task Description fields. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Articatech | Artica Proxy | All | All | All | All |
| Application | Articatech | Artica Proxy | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Artica Proxy | Internet Proxy and Web filtering | MISC | artica-proxy.com | Vendor Advisory |
| GitHub - pratikshad19/CVE-2020-15051: CVE-2020-15051 : Artica Proxy before 4.30.000000 Community Edition allows Stored Cross Site Scripting. | MISC | github.com | Exploit, Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.