Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-18468

Cross Site Scripting (XSS) vulnerability exists in qdPM 9.1 in the Heading field found in the Login Page page under the General menu via a crafted website name by doing an authenticated POST HTTP request to /qdPM_9.1/index.php/configuration.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 42.5%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2020-18468
  • Qdpm » Qdpm » Version: 9.1
    cpe:2.3:a:qdpm:qdpm:9.1


Contact Us

Shodan ® - All rights reserved