CVE-2020-26049

MEDIUM WAF: High
CVSS 6.1 Published: 2020-12-21
CWE-79

Nifty-PM CPE 2.3 is affected by stored HTML injection. The impact is remote arbitrary code execution.

WAF Coverage Analysis

Cross-Site Scripting (XSS) High WAF Coverage

OWASP: A03:2021 Injection

941xxx - XSS / XXE

Affected Software

VendorProductVersion
niftypmnifty-pmcpe_2.3

References

Back to CVE Database