CVE-2020-35563

An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is an incomplete XSS filter allowing an attacker to inject crafted malicious code into the page.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mbconnectline:mbconnect24:*:*:*:*:*:*:*:*
cpe:2.3:a:mbconnectline:mymbconnect24:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-02-16 16:15

Updated : 2024-02-28 18:08


NVD link : CVE-2020-35563

Mitre link : CVE-2020-35563

CVE.ORG link : CVE-2020-35563


JSON object : View

Products Affected

mbconnectline

  • mymbconnect24
  • mbconnect24
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')