668
VMScore

CVE-2020-13756

Published: 03/06/2020 Updated: 21/07/2021
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Sabberworm PHP CSS Parser prior to 8.3.1 calls eval on uncontrolled data, possibly leading to remote code execution if the function allSelectors() or getSelectorsBySpecificity() is called with input from an attacker.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sabberworm php css parser

Exploits

Sabberworm PHP CSS parser suffers from a code injection vulnerability Many versions are affected ...