Medium severity6.1NVD Advisory· Published Jun 24, 2020· Updated Jun 17, 2026
CVE-2020-13483
CVE-2020-13483
Description
The Web Application Firewall in Bitrix24 through 20.0.0 allows XSS via the items[ITEMS][ID] parameter to the components/bitrix/mobileapp.list/ajax.php/ URI.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Bitrix24/Bitrix24description
Patches
Vulnerability mechanics
References
1- gist.github.com/mariuszpoplwski/ca6258cf00c723184ebd2228ba81f558nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.