PT-2019-5958 · Andover · Andover Continuum

Publicado

2019-11-20

·

Atualizado

2019-12-03

·

CVE-2019-6853

CVSS v2.0

5.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Andover Continuum versions 9680, 5740, 5720, bCX4040, bCX9640, 9900, 9940, 9924, and 9702
Description The issue is related to the lack of input data sanitization, which can lead to Cross-site Scripting (XSS) attacks. This could allow a remote attacker to perform XSS attacks.
Recommendations For versions 9680, 5740, 5720, bCX4040, bCX9640, 9900, 9940, 9924, and 9702, consider restricting access to the web server as a temporary workaround until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2021-03888
CVE-2019-6853

Produtos afetados

Andover Continuum