The Admin CP in vBulletin 5.6.3 allows XSS via a Style Options Settings Title to Styles Manager.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-25118
Reference (s):
- https://pentest-vincent.blogspot.com/2020/09/vbulletin-563-multiple-persistent-cross.html

