CVE-2020-24188

Cross-site scripting (XSS) vulnerability in the search functionality in United Planet Intrexx Professional before 20.03 allows remote attackers to inject arbitrary web script or HTML via the request parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:unitedplanet:intrexx:*:*:*:*:professional:*:*:*

Information

Published : 2020-10-14 15:15

Updated : 2020-10-19 19:29


NVD link : CVE-2020-24188

Mitre link : CVE-2020-24188


JSON object : View

Products Affected

unitedplanet

  • intrexx
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')