CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. Exploitation may require the attacker to be authenticated.
CVE
CVE-2020-26799
Severity
CRITICAL
CVSS
9.8
EPSS
0.53%
Original NVD Description
A reflected cross-site scripting (XSS) vulnerability was discovered in index.php on Luxcal 4.5.2 which allows an unauthenticated attacker to steal other users' data.