CVE-2020-13116: Carbonite Server Backup Portal

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

OpenText Carbonite Server Backup Portal before 8.8.7 allows XSS by an authenticated user via policy creation.

Affected products

  • Carbonite Server Backup Portal: from 8.81, before 8.87 (fixed in 8.87)

Published 2021-01-12. Last modified 2026-06-17.