CVE-2020-28859: Openasset Digital Asset Management
Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.
OpenAsset Digital Asset Management (DAM) through 12.0.19 does not correctly sanitize user supplied input in multiple parameters and endpoints, allowing for reflected cross-site scripting attacks.
Affected products
- Openasset Digital Asset Management: up to and including 12.0.19
Published 2020-12-14. Last modified 2026-07-09.