Lucene search

K
cvelistMitreCVELIST:CVE-2019-11818
HistoryMay 08, 2019 - 3:34 p.m.

CVE-2019-11818

2019-05-0815:34:45
mitre
www.cve.org
8

EPSS

0.001

Percentile

50.4%

Alkacon OpenCMS v10.5.4 and before is affected by stored cross site scripting (XSS) in the module New User (/opencms/system/workplace/admin/accounts/user_new.jsp). This allows an attacker to insert arbitrary JavaScript as user input (First Name or Last Name), which will be executed whenever the affected snippet is loaded.

EPSS

0.001

Percentile

50.4%

Related for CVELIST:CVE-2019-11818