NA

CVE-2020-24922

Published: 11/08/2023 Updated: 17/08/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Cross Site Request Forgery (CSRF) vulnerability in xxl-job-admin/user/add in xuxueli xxl-job version 2.2.0, allows remote malicious users to execute arbitrary code and esclate privileges via crafted .html file.

Vulnerable Product Search on Vulmon Subscribe to Product

xuxueli xxl-job 2.2.0