CVE-2020-21387
EUVD-2020-1415904.10.2021, 20:15
A cross-site scripting (XSS) vulnerability in the parameter type_en of Maccms 10 allows attackers to obtain the administrator cookie and escalate privileges via a crafted payload.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| maccms | maccms | 10.0 |
𝑥
= Vulnerable software versions