PT-2020-14474 · Typo3 · Ke Search
Torben Hansen
·
Published
2020-07-07
·
Updated
2022-05-24
·
CVE-2020-15517
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
ke search extension versions 2.8.2 and earlier
ke search extension versions 3.x through 3.1.3
Description
The issue allows for XSS.
Recommendations
For ke search extension versions 2.8.2 and earlier, update to a version later than 2.8.2.
For ke search extension versions 3.x through 3.1.3, update to a version later than 3.1.3.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ke Search