TCExam Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2020-5745 - Vulnerability Database
TCExam Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2020-5745
High
Reference:
CVE-2020-5745
Title:
TCExam Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:
Cross-site request forgery in TCExam 14.2.2 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.