CVE-2019-20528

CVSS v3.1 6.1 (Medium)
61% Progress
CVSS v2.0 4.3 (Medium)
43% Progress
EPSS 0.09 % (38th)
0.09% Progress
Affected Products 1
Advisories 1

Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp username parameter.

Weaknesses
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2020-03-18 19:15:17
(4 years ago)
Updated Date
2020-03-20 12:20:42
(4 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Igniterealtime Openfire 4.4.1 cpe:2.3:a:igniterealtime:openfire:4.4.1
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...