CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.1. It affects Apache. Its EPSS score suggests a 97.3% probability of exploitation in the next 30 days.
CVE
CVE-2020-1943
Severity
MEDIUM
CVSS
6.1
EPSS
97.31%
Apache
Original NVD Description
Data sent with contentId to /control/stream is not sanitized, allowing XSS attacks in Apache OFBiz 16.11.01 to 16.11.07.
Related CVEs
Other vulnerabilities affecting the same vendor(s)