nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-20142 CVE-2020-20142
MEDIUM
Flexmonster Pivot Table & Charts 2.7.17 - 'To remote CSV' Reflected XSS
Record summary
CVE-2020-20142 has a selected CVSS score of 6.1 (medium); EIP currently links 1 catalogued exploit.
Description
Cross Site Scripting (XSS) vulnerability in the "To Remote CSV" component under "Open" Menu in Flexmonster Pivot Table & Charts 2.7.17.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBFlexmonster Pivot Table & Charts 2.7.17 - 'To remote CSV' Reflected XSSExploitDB exploitby Marco NappiNot analyzed1 file
References
2packetstormsecurity.com
https://packetstormsecurity.com/files/160604/Flexmonster-Pivot-Table-And-Charts-2.7.17-Cross-Site-Scripting.html