studio/builder_menu.php?page=sets in UNA 10.0.0-RC1 allows XSS via the System Name field under Sets during set editing.
References
Link Resource
https://github.com/unaio/una/commits/master/studio Issue Tracking Third Party Advisory
https://pastebin.com/BRFQkqLQ Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-08-09T13:47:37

Updated: 2019-08-09T13:47:37

Reserved: 2019-08-09T00:00:00


Link: CVE-2019-14805

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-08-09T14:15:12.037

Modified: 2019-08-14T15:14:06.687


Link: CVE-2019-14805

JSON object: View

cve-icon Redhat Information

No data.

CWE