4.8
CVSSv3

CVE-2020-22841

Published: 09/02/2021 Updated: 17/02/2021
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Stored XSS in b2evolution CMS version 6.11.6 and prior allows an malicious user to perform malicious JavaScript code execution via the plugin name input field in the plugin module.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

b2evolution b2evolution