
CVE-2020-37072 Victor CMS 1.0 contains a stored cross-site scripting vulnerability in the 'comment_author' POST parameter that allows attackers to inject malicious scripts. Attacker… https://www.cve.org/CVERecord?id=CVE-2020-37072
Post summary
The text announces a stored XSS vulnerability in Victor CMS 1.0 affecting the comment_author POST parameter, with no mention of exploits, patches, or active exploitation.
