CVE-2020-36621

Published
View on NVD ↗
CVSS v3
3.5
LOW
CVSS v2
N/A
Affected
1
PROJECT

Description

A vulnerability, which was classified as problematic, has been found in chedabob whatismyudid. Affected by this issue is the function exports.enrollment of the file routes/mobileconfig.js. The manipulation leads to cross site scripting. The attack may be launched remotely. The name of the patch is bb33d4325fba80e7ea68b79121dba025caf6f45f. It is recommended to apply a patch to fix this issue. VDB-216470 is the identifier assigned to this vulnerability.

Node.js app to display the UDID of an iOS device via Mobile Config
GitHubGitHub
24