CVE-2020-21387

Published

Severity

CVSS v3:
6.1 MEDIUM
CVSS v2:
4.3 MEDIUM

Description

A cross-site scripting (XSS) vulnerability in the parameter type_en of Maccms 10 allows attackers to obtain the administrator cookie and escalate privileges via a crafted payload.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:maccms:maccms:10.0:*:*:*:*:*:*:*n/an/a10.0

External Links