Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-10146

Опубликовано: 18 мар. 2020
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 2.6
CVSS3: 4.7

Описание

A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

DNE

eoan

ignored

end of life
esm-apps/bionic

needed

esm-apps/focal

needed

esm-apps/jammy

not-affected

esm-apps/xenial

needs-triage

esm-infra-legacy/trusty

DNE

focal

ignored

end of standard support, was needed
groovy

not-affected

Показывать по

EPSS

Процентиль: 49%
0.00261
Низкий

2.6 Low

CVSS2

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.7
redhat
больше 5 лет назад

A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.

CVSS3: 4.7
nvd
больше 5 лет назад

A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.

CVSS3: 4.7
debian
больше 5 лет назад

A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x ...

CVSS3: 4.7
github
около 3 лет назад

A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.

oracle-oval
больше 4 лет назад

ELSA-2021-0851: pki-core security and bug fix update (IMPORTANT)

EPSS

Процентиль: 49%
0.00261
Низкий

2.6 Low

CVSS2

4.7 Medium

CVSS3