Learn about CVE-2020-23658, a Cross Site Scripting (XSS) vulnerability in PHP-Fusion 9.03.60 via poll_admin.php. Find out the impact, affected systems, exploitation, and mitigation steps.
PHP-Fusion 9.03.60 is affected by Cross Site Scripting (XSS) via infusions/member_poll_panel/poll_admin.php.
Understanding CVE-2020-23658
PHP-Fusion 9.03.60 is susceptible to a Cross Site Scripting (XSS) vulnerability that can be exploited through the poll_admin.php file.
What is CVE-2020-23658?
This CVE identifies a Cross Site Scripting (XSS) vulnerability in PHP-Fusion 9.03.60, specifically within the poll_admin.php file, allowing attackers to inject malicious scripts into web pages viewed by other users.
The Impact of CVE-2020-23658
Technical Details of CVE-2020-23658
PHP-Fusion 9.03.60 is affected by a specific type of security flaw:
Vulnerability Description
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
Protect your systems and data from CVE-2020-23658 with these measures:
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates