CVE-2020-27533
Summary
| CVE | CVE-2020-27533 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-10-22 15:15:00 UTC |
| Updated | 2022-06-03 18:56:00 UTC |
| Description | A Cross Site Scripting (XSS) issue was discovered in the search feature of DedeCMS v.5.8 that allows malicious users to inject code into web pages, and other users will be affected when viewing web pages. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| DedeCMS 5.8 Cross Site Scripting ≈ Packet Storm | MISC | packetstormsecurity.com | |
| Cross-Site Scripting · Issue #16 · dedetech/issues · GitHub | MISC | github.com | Exploit, Issue Tracking, Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.