CVE-2020-28930
16.12.2020, 21:15
A Cross-Site Scripting (XSS) issue in the 'update user' and 'delete user' functionalities in settings/users.php in EPSON EPS TSE Server 8 (21.0.11) allows an authenticated attacker to inject a JavaScript payload in the user management page that is executed by an administrator.
Vendor | Product | Version |
---|---|---|
epson | eps_tse_server_8_firmware | 21.0.11 |
𝑥
= Vulnerable software versions