A cross-site-scripting (XSS) vulnerability exists when an open source customization for Microsoft Active Directory Federation Services (AD FS) does not properly sanitize a specially crafted web request to an affected AD FS server, aka "Active Directory Federation Services XSS Vulnerability." This affects Windows Server 2012 R2, Windows RT 8.1, Windows Server 2019, Windows Server 2016, Windows 8.1, Windows 10, Windows 10 Servers.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: microsoft

Published: 2018-11-14T01:00:00

Updated: 2018-11-14T10:57:02

Reserved: 2018-03-14T00:00:00


Link: CVE-2018-8547

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-11-14T01:29:01.037

Modified: 2018-12-14T19:10:21.363


Link: CVE-2018-8547

JSON object: View

cve-icon Redhat Information

No data.

CWE