CVE-2020-36012: Bdtask Multi-Store

Medium severity, CVSS 4.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Stored XSS vulnerability in BDTASK Multi-Store Inventory Management System 1.0 allows a local admin to inject arbitrary code via the Customer Name Field.

Affected products

  • Bdtask Multi-Store: version 1.0.0 only

Published 2021-01-27. Last modified 2026-07-09.