← Back to CVE List

CVE-2020-22158

Published: 2020-09-14T16:15Z
Last Modified: 2024-11-21T05:13Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
MediaKind (formerly Ericsson) RX8200 5.13.3 devices are vulnerable to multiple reflected and stored XSS. An attacker has to inject JavaScript code directly in the "path" or "Services+ID" parameters and send the URL to a user in order to exploit reflected XSS. In the case of stored XSS, an attacker must modify the "name" parameter with the malicious code. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt