ex-mi.ru
https://ex-mi.ru/exploit/%5B2020-08-23%5D-%5BPHP%5D-best-support-system-v3.0.4.txt CVE-2020-24963
MEDIUM
Best Support System 3.0.4 - 'ticket_body' Persistent XSS (Authenticated)
Record summary
CVE-2020-24963 has a selected CVSS score of 5.4 (medium); EIP currently links 1 catalogued exploit.
Description
An Authenticated Persistent XSS vulnerability was discovered in the Best Support System, tested version v3.0.4.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBBest Support System 3.0.4 - 'ticket_body' Persistent XSS (Authenticated)ExploitDB exploitby Ex.MiNot analyzed1 file
References
6ex-mi.ru
https://ex-mi.ru/exploit/[2020-08-23]-[PHP]-best-support-system-v3.0.4.txt ex-mi.ru
https://ex-mi.ru/exploit/[2020-08-23]-%7BPHP]-best-support-system-v3.0.4.txt medium.com
https://medium.com/%40ex.mi/php-best-support-system-v3-0-4-authenticated-persistent-xss-dfe6d4a06f75 medium.com
https://medium.com/@ex.mi/php-best-support-system-v3-0-4-authenticated-persistent-xss-dfe6d4a06f75 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-24963