CVE-2020-20426: S-CMS
Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.
S-CMS Government Station Building System v5.0 contains a cross-site scripting (XSS) vulnerability in /function/booksave.php.
Affected products
- S-CMS S-CMS: version 5.0 only
Published 2021-12-22. Last modified 2026-07-09.