CVE-2020-5638
Summary
| CVE | CVE-2020-5638 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-12-03 12:15:00 UTC |
| Updated | 2020-12-04 01:30:00 UTC |
| Description | Cross-site scripting vulnerability in desknet's NEO (desknet's NEO Small License V5.5 R1.5 and earlier, and desknet's NEO Enterprise License V5.5 R1.5 and earlier) allows remote attackers to inject arbitrary script via unspecified vectors. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| JVN#42199826: desknet's NEO vulnerable to cross-site scripting | MISC | jvn.jp | Third Party Advisory |
| パッケージ版 障害・メンテナンス情報:desknet'sNEO 製品におけるセキュリティ上の問題(クロスサイト・スクリプティング)について│グループウェア desknet's NEO | MISC | www.desknets.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.