Unrated severityNVD Advisory· Published Feb 16, 2020· Updated Aug 4, 2024
CVE-2020-9012
CVE-2020-9012
Description
A cross-site scripting (XSS) vulnerability in the Import People functionality in Gluu Identity Configuration 4.0 allows remote attackers to inject arbitrary web script or HTML via the filename parameter.
Affected products
2- Gluu/Identity Configurationdescription
- Range: =4.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- support.gluu.org/other/7992/reflected-cross-site-scripting-on-import-people/mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.