Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-23371

Cross-site scripting (XSS) vulnerability in static/admin/js/kindeditor/plugins/multiimage/images/swfupload.swf in noneCms v1.3.0 allows remote attackers to inject arbitrary web script or HTML via the movieName parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 41.2%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2020-23371
  • 5none » Nonecms » Version: 1.3.0
    cpe:2.3:a:5none:nonecms:1.3.0


Contact Us

Shodan ® - All rights reserved