AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-3975

MEDIUM · CVSS 5.4 EPSS 0.52%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-08-21 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-3975
Severity
MEDIUM
CVSS
5.4
EPSS
0.52%
VMware VMWare

Original NVD Description

VMware App Volumes 2.x prior to 2.18.6 and VMware App Volumes 4 prior to 2006 contain a Stored Cross-Site Scripting (XSS) vulnerability. A malicious actor with access to create and edit applications or create storage groups, may be able to inject malicious script which will be executed by a victim's browser when viewing.