VYPR
Medium severity6.1NVD Advisory· Published May 28, 2021· Updated Jun 17, 2026

CVE-2020-26642

CVE-2020-26642

Description

A cross-site scripting (XSS) vulnerability has been discovered in the login page of SeaCMS version 11 which allows an attacker to inject arbitrary web script or HTML.

Affected products

3
  • Seacms/Seacms2 versions
    cpe:2.3:a:seacms:seacms:11.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:seacms:seacms:11.0:*:*:*:*:*:*:*
    • (no CPE)range: 11
  • SeaCMS/SeaCMSdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.