← Back

CVE-2020-24706

nvd nist
Published: Aug 27, 2020Modified: Jun 17, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager through 3.1.0, API Manager Analytics 2.5.0, IS as Key Manager through 5.10.0, Identity Server through 5.10.0, Identity Server Analytics through 5.6.0, and IoT Server 3.1.0.

Affected (6)

6 products
Api Manager
Api Manager Analytics
Identity Server
Identity Server Analytics
Identity Server As Key Manager
Iot Server
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Up to 3.1.0
Version 2.5.0
Up to 5.10.0
Up to 5.6.0
Up to 5.10.0
Version 3.1.0

Timeline

No history available yet.