Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Kyle Timmermans

#46780of 53,632
5.4Total CVSS
Vulnerabilities · 1
PT-2020-20427
5.4
2020-02-25
Blackboard · Blackboard Learn · CVE-2020-9008
**Name of the Vulnerable Software and Affected Versions** Blackboard Learn/PeopleTool version 9.1 **Description** A stored Cross-site scripting (XSS) issue allows users to inject arbitrary web script via the Tile widget in the People Tool profile editor. This could potentially affect a significant number of devices, but the exact number is not specified. **Recommendations** For Blackboard Learn/PeopleTool version 9.1, consider disabling the Tile widget in the People Tool profile editor until a patch is available to prevent exploitation of the stored XSS issue.