Vulnerability Details CVE-2020-28408
The server in Dundas BI through 8.0.0.1001 allows XSS via an HTML label when creating or editing a dashboard.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.1%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2020-28408
-
cpe:2.3:a:dundas:dundas_bi:5.0.1.1010
-
cpe:2.3:a:dundas:dundas_bi:8.0.0.1001