Lucene search

K
redhatcveRedhat.comRH:CVE-2020-1721
HistoryFeb 05, 2020 - 8:44 a.m.

CVE-2020-1721

2020-02-0508:44:23
redhat.com
access.redhat.com
6

0.001 Low

EPSS

Percentile

34.0%

A flaw was found in the Key Recovery Authority (KRA) Agent Service where it did not properly sanitize the recovery ID during a key recovery request, enabling a Reflected Cross-Site Scripting (XSS) vulnerability. An attacker could trick an authenticated victim into executing specially crafted Javascript code.