Cross Site Scripting Vulnerability in Lepton-CMS by Lepton
CVE-2020-24872
6.1MEDIUM
What is CVE-2020-24872?
A Cross Site Scripting (XSS) vulnerability exists in the Lepton-CMS version 4.7.0. This flaw is located in the backend/pages/modify.php file, allowing remote attackers to inject malicious scripts. Exploiting this vulnerability could enable attackers to execute arbitrary code in the context of an affected user, posing significant security risks to the integrity and confidentiality of user data and systems.
