Lucene search

K
redhatcveRedhat.comRH:CVE-2019-10178
HistoryFeb 05, 2020 - 9:14 a.m.

CVE-2019-10178

2020-02-0509:14:18
redhat.com
access.redhat.com
15

0.001 Low

EPSS

Percentile

35.9%

It was found that the Token Processing Service (TPS) did not properly sanitize the Token IDs from the “Activity” page, enabling a Stored Cross Site Scripting (XSS) vulnerability. An unauthenticated attacker could trick an authenticated victim into creating a specially crafted activity, which would execute arbitrary JavaScript code when viewed in a browser.

0.001 Low

EPSS

Percentile

35.9%