cbcvebase.
CVE-2020-12685
published 2020-05-15

CVE-2020-12685: XSS in the admin help system admin/help.html and admin/quicklinks.html in Interchange 4.7.0 through 5.11.x allows remote attackers to steal credentials or data…

medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
XSS in the admin help system admin/help.html and admin/quicklinks.html in Interchange 4.7.0 through 5.11.x allows remote attackers to steal credentials or data via browser JavaScript.

Affected

1 ranges
VendorProductVersion rangeFixed in
redhatinterchange>= 4.7.0 < 5.12.05.12.0