CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.4. See the original NVD description below for full technical details.
CVE
CVE-2020-9311
Severity
MEDIUM
CVSS
5.4
EPSS
0.56%
Original NVD Description
In SilverStripe through 4.5, malicious users with a valid Silverstripe CMS login (usually CMS access) can craft profile information which can lead to XSS for other users through specially crafted login form URLs.
Related CVEs
Other vulnerabilities affecting the same vendor(s)