cve/2020/CVE-2020-13825.md
2024-06-09 00:33:16 +00:00

782 B

CVE-2020-13825

Description

A cross-site scripting (XSS) vulnerability in i-doit 1.14.2 allows remote attackers to inject arbitrary web script or HTML via the viewMode, tvMode, tvType, objID, catgID, objTypeID, or editMode parameter.

POC

Reference

Github

No PoCs found on GitHub currently.