Логотип exploitDog
bind:CVE-2019-12417
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-12417

Количество 3

Количество 3

nvd логотип

CVE-2019-12417

больше 6 лет назад

A malicious admin user could edit the state of objects in the Airflow metadata database to execute arbitrary javascript on certain page views. This also presented a Local File Disclosure vulnerability to any file readable by the webserver process.

CVSS3: 4.8
EPSS: Низкий
debian логотип

CVE-2019-12417

больше 6 лет назад

A malicious admin user could edit the state of objects in the Airflow ...

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-q3p4-gw7r-wqjc

около 6 лет назад

Apache Airflow vulnerable to XSS and local file disclosure

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-12417

A malicious admin user could edit the state of objects in the Airflow metadata database to execute arbitrary javascript on certain page views. This also presented a Local File Disclosure vulnerability to any file readable by the webserver process.

CVSS3: 4.8
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-12417

A malicious admin user could edit the state of objects in the Airflow ...

CVSS3: 4.8
1%
Низкий
больше 6 лет назад
github логотип
GHSA-q3p4-gw7r-wqjc

Apache Airflow vulnerable to XSS and local file disclosure

CVSS3: 4.8
1%
Низкий
около 6 лет назад

Уязвимостей на страницу