Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-10146

Опубликовано: 18 мар. 2020
Источник: nvd
CVSS3: 4.7
CVSS3: 4.7
CVSS2: 2.6
EPSS Низкий

Описание

A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:dogtagpki:dogtagpki:*:*:*:*:*:*:*:*
Версия от 10.0 (включая) до 10.7.3 (включая)

EPSS

Процентиль: 49%
0.00261
Низкий

4.7 Medium

CVSS3

4.7 Medium

CVSS3

2.6 Low

CVSS2

Дефекты

CWE-79
CWE-79

Связанные уязвимости

CVSS3: 4.7
ubuntu
больше 5 лет назад

A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.

CVSS3: 4.7
redhat
больше 5 лет назад

A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.

CVSS3: 4.7
debian
больше 5 лет назад

A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x ...

CVSS3: 4.7
github
около 3 лет назад

A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.

oracle-oval
больше 4 лет назад

ELSA-2021-0851: pki-core security and bug fix update (IMPORTANT)

EPSS

Процентиль: 49%
0.00261
Низкий

4.7 Medium

CVSS3

4.7 Medium

CVSS3

2.6 Low

CVSS2

Дефекты

CWE-79
CWE-79