Medium severity4.8NVD Advisory· Published Jan 26, 2021· Updated Jun 17, 2026
CVE-2020-29241
CVE-2020-29241
Description
Online News Portal using PHP/MySQLi 1.0 is affected by cross-site scripting (XSS) which allows remote attackers to inject an arbitrary web script or HTML via the "Title" parameter.
Affected products
3- cpe:2.3:a:online_news_portal_project:online_news_portal:1.0:*:*:*:*:*:*:*
- Online News Portal/Online News Portaldescription
- Range: <=1.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.