XSS via content1 param in kindsoft KindEditor 4.1.12
CVE-2020-28717 Published on August 11, 2023

Cross Site Scripting (XSS) vulnerability in content1 parameter in demo.jsp in kindsoft kindeditor version 4.1.12, allows attackers to execute arbitrary code.

NVD


Products Associated with CVE-2020-28717

Want to know whenever a new CVE is published for Kindsoft Kindeditor? stack.watch will email you.

 

Exploit Probability

EPSS
0.21%
Percentile
42.95%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.