cve/2020/CVE-2020-29240.md
2024-06-09 00:33:16 +00:00

744 B

CVE-2020-29240

Description

Lepton-CMS 4.7.0 is affected by cross-site scripting (XSS). An attacker can inject the XSS payload in the URL field of the admin page and each time an admin visits the Menu-Pages-Pages Overview section, the XSS will be triggered.

POC

Reference

Github