ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-36954”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-36954
Published
2026-01-26
CVSS:
5.1
ShadowTrackr CVSS:
1.2
Summary:
Xeroneit Library Management System 3.1 contains a stored cross-site scripting vulnerability in the Book Category feature that allows administrators to inject malicious scripts. Attackers can insert a payload in the Category Name field to execute arbitrary JavaScript code when the page is loaded.