Lucene search

K
prionPRIOn knowledge basePRION:CVE-2019-18265
HistoryNov 30, 2022 - 11:15 p.m.

Cross site scripting

2022-11-3023:15:00
PRIOn knowledge base
www.prio-n.com
2
cross site scripting
dasdec
software
vulnerability
remote attackers
web script
html
ssh
login page
http host header
logs
web application

0.001 Low

EPSS

Percentile

29.3%

Digital Alert Systems’ DASDEC software prior to version 4.1 contains a cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web script or HTML via the SSH username, username field of the login page, or via the HTTP host header. The injected content is stored in logs and rendered when viewed in the web application.

0.001 Low

EPSS

Percentile

29.3%

Related for PRION:CVE-2019-18265