CVE-2020-35200
Ignite Realtime Openfire 4.6.0 has plugins/clientcontrol/spark-form.jsp Reflective XSS.
Ignite Realtime Openfire 4.6.0 has plugins/clientcontrol/spark-form.jsp Reflective XSS.
MEDIUM · CVSS 6.1
EPSS 0.0084
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0