PT-2019-5958 · Andover · Andover Continuum
Publicado
2019-11-20
·
Atualizado
2019-12-03
·
CVE-2019-6853
CVSS v2.0
5.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Andover Continuum versions 9680, 5740, 5720, bCX4040, bCX9640, 9900, 9940, 9924, and 9702
Description
The issue is related to the lack of input data sanitization, which can lead to Cross-site Scripting (XSS) attacks. This could allow a remote attacker to perform XSS attacks.
Recommendations
For versions 9680, 5740, 5720, bCX4040, bCX9640, 9900, 9940, 9924, and 9702, consider restricting access to the web server as a temporary workaround until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
XSS
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Andover Continuum