VYPR
Medium severity6.1NVD Advisory· Published Jun 26, 2020· Updated Jun 17, 2026

CVE-2020-15017

CVE-2020-15017

Description

NeDi 1.9C is vulnerable to reflected cross-site scripting. The Devices-Config.php file improperly validates user input. An attacker can exploit this vulnerability by crafting arbitrary JavaScript in the sta GET parameter.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • NeDi/NeDidescription
  • Nedit/Neditllm-fuzzy
    Range: = 1.9C

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.