CVE-2020-29070

Published
View on NVD ↗
CVSS v3
4.8
MEDIUM
CVSS v2
3.5
LOW
Affected
2
PROJECTS

Description

osCommerce 2.3.4.1 has XSS vulnerability via the authenticated user entering the XSS payload into the title section of newsletters.

WE KEPT OSCOMMERCE ALIVE, but now this Repo is defunct, please see the new Repo URL listed below.
GitHubGitHub
130
CVE-2020-29070 write-up.
GitHubGitHub
2