The Expedition Migration tool 1.1.8 and earlier may allow an authenticated attacker to run arbitrary JavaScript or HTML in the User Mapping Settings for account name of admin user.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/107564 | Third Party Advisory VDB Entry |
https://securityadvisories.paloaltonetworks.com/Home/Detail/142 | Third Party Advisory |
https://www.tenable.com/security/research/tra-2019-13 | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: palo_alto
Published: 2019-03-26T21:44:41
Updated: 2019-03-26T21:50:25
Reserved: 2018-12-06T00:00:00
Link: CVE-2019-1569
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-03-26T22:29:00.660
Modified: 2019-03-27T12:05:55.837
Link: CVE-2019-1569
JSON object: View
Redhat Information
No data.
CWE