Files
CVEs-PoC/2020/CVE-2020-13483.md
T
2024-05-25 21:48:12 +02:00

785 B

CVE-2020-13483

Description

The Web Application Firewall in Bitrix24 through 20.0.0 allows XSS via the items[ITEMS][ID] parameter to the components/bitrix/mobileapp.list/ajax.php/ URI.

POC

Reference

No PoCs from references.

Github