Reflected Cross-Site Scripting Vulnerability in XooNIps by OSDN
CVE-2020-5662

5.4MEDIUM

What is CVE-2020-5662?

The reflected cross-site scripting vulnerability in XooNIps versions 3.49 and earlier permits remote authenticated attackers to inject arbitrary scripts through unspecified vectors. This flaw can result in severe security risks as it allows attackers to execute malicious scripts in the context of a user's session, leading to data theft, session hijacking, and other exploitations. It is vital for users of XooNIps to update their software to mitigate this risk.

Affected Version(s)

XooNIps 3.49 and earlier

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.