cve/2020/CVE-2020-24901.md
2024-05-25 21:48:12 +02:00

708 B

CVE-2020-24901

Description

The default installation of Krpano Panorama Viewer version <=1.20.8 is vulnerable to Reflected XSS due to insecure remote js load in file viewer/krpano.html, parameter plugin[test].url.

POC

Reference

Github

No PoCs found on GitHub currently.