CVE-2020-25876
A stored cross site scripting (XSS) vulnerability in the 'Pages' feature of Codoforum v5.0.2 allows authenticated attackers to execute arbitrary web scripts or HTML via crafted payload entered into the 'Page Title' parameter.
- Affected products
- Codoforum
- Codologic Codoforum
- = 5.0.2
- Fix
- Available
- CVSS 3.1
- 5.4 MEDIUM
- EPSS
- 0.5% (37th percentile)
- Weakness
- CWE-79
- NVD status
- Modified
- Published
- 2021-07-09
CVE-2020-25876 at NVD
No indexed exploits for CVE-2020-25876 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2020-25876 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.