CVE-2020-20285
There is a XSS in the user login page in zzcms 2019. Users can inject js code by the referer header via user/login.php
There is a XSS in the user login page in zzcms 2019. Users can inject js code by the referer header via user/login.php.
MEDIUM · CVSS 5.4
EPSS 0.06066
Schedule remediation
- EPSS percentile: top 9% of all CVEs by exploitation likelihood
- Public exploit or PoC is available
Sigma rules0
YARA rules0