Lucene search

K
redhatcveRedhat.comRH:CVE-2020-2226
HistoryJul 15, 2020 - 9:07 p.m.

CVE-2020-2226

2020-07-1521:07:44
redhat.com
access.redhat.com
14

EPSS

0.001

Percentile

22.0%

A flaw was found in the Matrix Authorization Strategy Plugin version 2.6.1 and prior. User names are not escaped in the permission table which could lead to a stored cross-site scripting (XSS) vulnerability. The user must have the Agent/Configure, Job/Configure, or Overall/Administer permissions for this exploit to function. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

EPSS

0.001

Percentile

22.0%