Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-24901

The default installation of Krpano Panorama Viewer version <=1.20.8 is vulnerable to Reflected XSS due to insecure remote js load in file viewer/krpano.html, parameter plugin[test].url.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.7%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2020-24901
  • Krpano » Krpano » Version: 1.20
    cpe:2.3:a:krpano:krpano:1.20
  • Krpano » Krpano » Version: 1.20.1
    cpe:2.3:a:krpano:krpano:1.20.1
  • Krpano » Krpano » Version: 1.20.2
    cpe:2.3:a:krpano:krpano:1.20.2
  • Krpano » Krpano » Version: 1.20.3
    cpe:2.3:a:krpano:krpano:1.20.3
  • Krpano » Krpano » Version: 1.20.4
    cpe:2.3:a:krpano:krpano:1.20.4
  • Krpano » Krpano » Version: 1.20.5
    cpe:2.3:a:krpano:krpano:1.20.5
  • Krpano » Krpano » Version: 1.20.6
    cpe:2.3:a:krpano:krpano:1.20.6
  • Krpano » Krpano » Version: 1.20.7
    cpe:2.3:a:krpano:krpano:1.20.7
  • Krpano » Krpano » Version: 1.20.8
    cpe:2.3:a:krpano:krpano:1.20.8


Contact Us

Shodan ® - All rights reserved