CVE-2020-15716 | RosarioSIS 6.7.2 Preferences.php tab cross site scripting (EDB-52450 / XFDB-184942)
A vulnerability classified as problematic was found in RosarioSIS 6.7.2. The impacted element is an unknown function of the file Preferences.php. The manipulation of the argument tab as part of Parameter results in cross site scripting.
This vulnerability is known as CVE-2020-15716. It is possible to launch the attack remotely. Furthermore, an exploit is available.