Description
Cross Site Scripting (XSS) vulnerability exists in the admin panel in Beego v2.0.1 via the URI path in an HTTP request, which is activated by administrators viewing the "Request Statistics" page.
Remediation
References
Related Vulnerabilities
ownCloud Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-1850)
PHP Out-of-bounds Read Vulnerability (CVE-2020-7067)
MySQL Other Vulnerability (CVE-2002-0969)
SharePoint CVE-2020-16950 Vulnerability (CVE-2020-16950)
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4718)