THREAT OPS › Threat News › [NVD] CVE-2020-1055 (MEDIUM 5.5) — A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize user inputs. An un-authenticated attacker could exploit the vulnerability by sending a specially crafted request to an affected ADFS server.
The attacker
[NVD] CVE-2020-1055 (MEDIUM 5.5) — A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize user inputs. An un-authenticated attacker could exploit the vulnerability by sending a specially crafted request to an affected ADFS server. The attacker
CVE-2020-1055 CVSS: 5.5 MEDIUM Published: 2020-05-21T23:15:12.133
A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize user inputs. An un-authenticated attacker could exploit the vulnerability by sending a specially crafted request to an affected ADFS server. The attacker who successfully exploited the vulnerability could th
Indicators of compromise
- CVE-2020-1055cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2020-1055