CVE-2020-23975: Webexcels Ecommerce CMS

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

Webexcels Ecommerce CMS 2.x, 2017, 2018, 2019, 2020 has cross site scripting via the 'search.php' id parameter.

Affected products

  • Webexcels Ecommerce CMS: version 2017 only; version 2018 only; version 2019 only; version 2020 only

Published 2020-08-27. Last modified 2026-06-17.