Vulnerability Description
OpenText Carbonite Server Backup Portal before 8.8.7 allows XSS by an authenticated user via policy creation.
CVSS Score
5.4
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Carbonite | Server Backup Portal | >= 8.81, < 8.87 |
Related Weaknesses (CWE)
References
- https://support.carbonite.com/evault/articles/Cross-site-scripting-vulnerabilityVendor Advisory
- https://support.carbonite.com/evault/articles/Cross-site-scripting-vulnerabilityVendor Advisory
FAQ
What is CVE-2020-13116?
CVE-2020-13116 is a vulnerability with a CVSS score of 5.4 (MEDIUM). OpenText Carbonite Server Backup Portal before 8.8.7 allows XSS by an authenticated user via policy creation.
How severe is CVE-2020-13116?
CVE-2020-13116 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-13116?
Check the references section above for vendor advisories and patch information. Affected products include: Carbonite Server Backup Portal.