Vulnerability Details CVE-2020-15907
In Mahara 19.04 before 19.04.6, 19.10 before 19.10.4, and 20.04 before 20.04.1, certain places could execute file or folder names containing JavaScript.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.4%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2020-15907
-
cpe:2.3:a:mahara:mahara:19.04.0
-
cpe:2.3:a:mahara:mahara:19.04.1
-
cpe:2.3:a:mahara:mahara:19.04.2
-
cpe:2.3:a:mahara:mahara:19.04.3
-
cpe:2.3:a:mahara:mahara:19.04.4
-
cpe:2.3:a:mahara:mahara:19.04.5
-
cpe:2.3:a:mahara:mahara:19.10.0
-
cpe:2.3:a:mahara:mahara:19.10.1
-
cpe:2.3:a:mahara:mahara:19.10.2
-
cpe:2.3:a:mahara:mahara:19.10.3
-
cpe:2.3:a:mahara:mahara:20.04
-
cpe:2.3:a:mahara:mahara:20.04.0