Wednesday, November 18, 2020
CVE-2020-25890
nist.gov
In: nist.gov
The web application of Kyocera printer (ECOSYS M2640IDW) is affected by Stored XSS vulnerability, discovered in the addition a new contact in "Machine Address Book". Successful exploitation of this vulnerability can lead to session hijacking of the administrator in the web application or the execution of unwanted actions CVE-2020-25890