PHP-Fusion Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2020-17449 - Vulnerability Database
PHP-Fusion Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2020-17449
Medium
Reference:
CVE-2020-17449
Title:
PHP-Fusion Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:
PHP-Fusion 9.03 allows XSS via the error_log file.