CVE-2020-0872

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
12/03/2020
Last modified:
13/03/2020

Description

A remote code execution vulnerability exists in Application Inspector version v1.0.23 or earlier when the tool reflects example code snippets from third-party source files into its HTML output, aka 'Remote Code Execution Vulnerability in Application Inspector'.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:application_inspector:*:*:*:*:*:*:*:* 1.0.23 (including)