HomePentest-Tools.com Logo

FlatPress <= 1.2.1 XSS Vulnerability CVE-2020-35241

Severity
CVSSv3 Score
4.8
Vulnerability description

FlatPress is prone to a cross-site scripting (XSS) vulnerability in the Blog Content component.

Risk description
Not available
Recommendation

No known solution was made available for at least one year since the disclosure of this vulnerability. Likely none will be provided anymore. General solution options are to upgrade to a newer release, disable respective features, remove the product or replace the product by another one. Note: The vendor has closed the related issue as not planned on 23rd June, 2022.

Codename
Not available
Detectable with
Network Scanner
Scan engine
OpenVAS
Exploitable with Sniper
No
CVE Published
Dec 30, 2020
Detection added at
Software Type
Not available
Vendor
Not available
Product
Not available