cve/2020/CVE-2020-22987.md
2024-06-09 00:33:16 +00:00

808 B

CVE-2020-22987

Description

Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via the fileToUpload parameter to the uploadFile task.

POC

Reference

Github

No PoCs found on GitHub currently.