Stored XSS Vulnerability in phpList by phpList
CVE-2020-23208
5.4MEDIUM
What is CVE-2020-23208?
A stored cross-site scripting (XSS) vulnerability exists in phpList version 3.5.3. This flaw enables attackers to inject malicious scripts or HTML code through the 'Send test' field in the 'Start or continue campaign' module. If successfully executed, this vulnerability can compromise user data and compromise the integrity of the application.
