PT-2020-15567 · Laborator · Laborator Neon Dashboard
Published
2020-08-27
·
Updated
2020-09-02
·
CVE-2020-23576
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Laborator Neon dashboard version 3
Description
The issue is related to stored Cross Site Scripting (XSS) that can be executed via the chat tab.
Recommendations
For Laborator Neon dashboard version 3, consider disabling the chat tab functionality until a fix is available to prevent potential exploitation.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Laborator Neon Dashboard