Northern.tech CFEngine Enterprise before 3.10.7, 3.11.x and 3.12.x before 3.12.3, 3.13.x, and 3.14.x allows XSS. This is fixed in 3.10.7, 3.12.3, and 3.15.0.
References
Link | Resource |
---|---|
https://cfengine.com/company/blog-detail/cve-2019-19394-mission-portal-javascript-injection-vulnerability/ | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-04-16T17:48:23
Updated: 2020-04-16T17:48:23
Reserved: 2019-11-29T00:00:00
Link: CVE-2019-19394
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-04-16T19:15:22.510
Modified: 2020-04-22T20:17:05.530
Link: CVE-2019-19394
JSON object: View
Redhat Information
No data.
CWE