CVE-2020-13116: Carbonite Server Backup Portal
Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.
OpenText Carbonite Server Backup Portal before 8.8.7 allows XSS by an authenticated user via policy creation.
Affected products
- Carbonite Server Backup Portal: from 8.81, before 8.87 (fixed in 8.87)
Published 2021-01-12. Last modified 2026-06-17.