FlightPath 4.8.3 has XSS in the Content, Edit urgent message, and Users sections of the Admin Console. This could lead to cookie stealing and other malicious actions.
References
Link Resource
https://www.sevenlayers.com/index.php/236-flightpath-4-8-3-xss Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-08-20T04:09:23

Updated: 2019-08-20T04:09:23

Reserved: 2019-08-19T00:00:00


Link: CVE-2019-15227

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-08-20T05:15:10.320

Modified: 2019-08-28T14:07:21.587


Link: CVE-2019-15227

JSON object: View

cve-icon Redhat Information

No data.

CWE