Vulnerability Details CVE-2020-15599
Victor CMS through 2019-02-28 allows XSS via the register.php user_firstname or user_lastname field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 36.8%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2020-15599
-
cpe:2.3:a:victor_cms_project:victor_cms:1.0
-
cpe:2.3:a:victor_cms_project:victor_cms:2018-05-10
-
cpe:2.3:a:victor_cms_project:victor_cms:2019-02-28