Cross-Site Scripting Vulnerability in Polarion Subversion Webclient by Siemens
CVE-2020-15788
6.1MEDIUM
Key Information:
- Vendor
Siemens
- Vendor
- CVE Published:
- 9 September 2020
What is CVE-2020-15788?
A vulnerability in the Polarion Subversion Webclient allows for Cross-Site Scripting attacks due to inadequate input filtering. Attackers can craft malicious URLs that, when clicked by unsuspecting users, could trigger the execution of harmful JavaScript code in the user's browser. This could lead to a variety of unauthorized actions being performed unknowingly by the victim. Users and administrators must take precautions to mitigate this risk by ensuring that their applications are up-to-date and implementing proper input validation measures.
Affected Version(s)
Polarion Subversion Webclient All versions