Vulnerability Description
Cross Site Scripting (XSS) in redirect module of Racktables version 0.21.2, allows an attacker to inject arbitrary web script or HTML via the op parameter.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Racktables Project | Racktables | 0.21.2 |
Related Weaknesses (CWE)
References
- http://racktables.comNot ApplicableURL Repurposed
- https://github.com/RackTables/racktables/commit/2ce35adeaa47f60dc51875b2339725dbPatchThird Party Advisory
- http://racktables.comNot ApplicableURL Repurposed
- https://github.com/RackTables/racktables/commit/2ce35adeaa47f60dc51875b2339725dbPatchThird Party Advisory
FAQ
What is CVE-2020-19611?
CVE-2020-19611 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Cross Site Scripting (XSS) in redirect module of Racktables version 0.21.2, allows an attacker to inject arbitrary web script or HTML via the op parameter.
How severe is CVE-2020-19611?
CVE-2020-19611 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-19611?
Check the references section above for vendor advisories and patch information. Affected products include: Racktables Project Racktables.