cve/2020/CVE-2020-23044.md
2024-06-09 00:33:16 +00:00

774 B

CVE-2020-23044

Description

DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_pic_view.php via the activepath, keyword, tag, fmdo=x&filename, CKEditor and CKEditorFuncNum parameters.

POC

Reference

Github

No PoCs found on GitHub currently.