Vulnerability Description
Codologic Codoforum through 4.8.4 allows a DOM-based XSS. While creating a new topic as a normal user, it is possible to add a poll that is automatically loaded in the DOM once the thread/topic is opened. Because session cookies lack the HttpOnly flag, it is possible to steal authentication cookies and take over accounts.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Codologic | Codoforum | <= 4.8.4 |
Related Weaknesses (CWE)
References
- https://codologic.com/forum/index.php?u=/topic/12638/codoforum-4-8-8-released-anRelease NotesVendor Advisory
- https://www.linkedin.com/posts/polina-voronina-896819b5_discovered-by-polina-vorThird Party Advisory
- https://codologic.com/forum/index.php?u=/topic/12638/codoforum-4-8-8-released-anRelease NotesVendor Advisory
- https://www.linkedin.com/posts/polina-voronina-896819b5_discovered-by-polina-vorThird Party Advisory
FAQ
What is CVE-2020-7050?
CVE-2020-7050 is a vulnerability with a CVSS score of 5.4 (MEDIUM). Codologic Codoforum through 4.8.4 allows a DOM-based XSS. While creating a new topic as a normal user, it is possible to add a poll that is automatically loaded in the DOM once the thread/topic is ope...
How severe is CVE-2020-7050?
CVE-2020-7050 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-7050?
Check the references section above for vendor advisories and patch information. Affected products include: Codologic Codoforum.