Security Advisory

CVE-2020-22985

6.1
MEDIUM

Vulnerability Description

Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attackers to execute arbitrary code via the key parameter to the getESRIExtraConfig task.
Published Date May 12, 2022
Official Source NIST NVD Advisory