Vulnerability Description
The Search parameter of the Software Catalogue section of Matrix42 Workspace Management 9.1.2.2765 and below accepts unfiltered parameters that lead to multiple reflected XSS issues.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Matrix42 | Workspace Management | <= 9.1.2.2765 |
Related Weaknesses (CWE)
References
- https://seclists.org/fulldisclosure/2020/Apr/10ExploitMailing ListThird Party Advisory
- https://seclists.org/fulldisclosure/2020/Apr/10ExploitMailing ListThird Party Advisory
FAQ
What is CVE-2019-19390?
CVE-2019-19390 is a vulnerability with a CVSS score of 5.4 (MEDIUM). The Search parameter of the Software Catalogue section of Matrix42 Workspace Management 9.1.2.2765 and below accepts unfiltered parameters that lead to multiple reflected XSS issues.
How severe is CVE-2019-19390?
CVE-2019-19390 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-19390?
Check the references section above for vendor advisories and patch information. Affected products include: Matrix42 Workspace Management.