PT-2020-16081 · Arachnys · Arachnys Cabot
Published
2020-12-04
·
Updated
2022-05-24
·
CVE-2020-25449
CVSS v3.1
4.8
Medium
| Vector | AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Arachnys Cabot version 0.11.12
Description
The issue is a Cross Site Scripting (XSS) vulnerability that can be exploited via the
Address column. This allows for malicious scripts to be injected into the website, potentially leading to unauthorized access or control.Recommendations
For Arachnys Cabot version 0.11.12, update to a version that fixes the XSS vulnerability in the Address column to prevent exploitation.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Arachnys Cabot