VYPR
Medium severity4.8NVD Advisory· Published Aug 12, 2021· Updated Jun 17, 2026

CVE-2020-18456

CVE-2020-18456

Description

Cross Site Scripting (XSS) vulnerability exists in PbootCMS v1.3.7 via the title parameter in the mod function in SingleController.php.

Affected products

3
  • cpe:2.3:a:pbootcms:pbootcms:1.3.7:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:pbootcms:pbootcms:1.3.7:*:*:*:*:*:*:*
    • (no CPE)range: <1.3.7
  • PbootCMS/PbootCMSdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.