CVE-2020-35132: Fedoraproject Fedora
Medium severity, CVSS 5.4. EPSS: 1.3% chance of exploitation in the next 30 days.
An XSS issue has been discovered in phpLDAPadmin before 1.2.6.2 that allows users to store malicious values that may be executed by other users at a later time via get_request in lib/function.php.
Affected products
- Fedoraproject Fedora: version 32 only; version 33 only
- Phpldapadmin Project Phpldapadmin: before 1.2.6.2 (fixed in 1.2.6.2)
Published 2020-12-11. Last modified 2026-06-17.