CVE-2019-18955

MEDIUM WAF: High
CVSS 6.1 Published: 2019-12-19
CWE-79

The web console in Lansweeper 7.2.105.2 has XSS via the URL path. Product vulnerability has been fixed and disclosed within changelog as of 02 Dec 2019.

WAF Coverage Analysis

Cross-Site Scripting (XSS) High WAF Coverage

OWASP: A03:2021 Injection

941xxx - XSS / XXE

Affected Software

VendorProductVersion
lansweeperlansweeper7.2.105.2

References

Back to CVE Database