Report: CVE-2013-20006 - Qool CMS Multiple Persistent Cross-Site Scripting Vulnerabilities

Report: CVE-2013-20006 - Qool CMS Multiple Persistent Cross-Site Scripting Vulnerabilities

CVE ID :CVE-2013-20006 Published : March 15, 2026, 6:34 p.m. | 1 hour, 3 minutes ago Description :Qool CMS contains multiple persistent cross-site scripting vulnerabilities in several administrative scripts where POST parameters are not properly sanitized before being stored and returned to users. Attackers can inject malicious JavaScript code through parameters like 'title', 'name', 'email', 'username', 'link', and 'task' in endpoints such as addnewtype, addnewdatafield, addmenu, addusergroup, addnewuserfield, adduser, addgeneraldata, and addcontentitem to execute arbitrary scripts in administrator browsers. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
March 15, 2026