CVE-2018-11245: XSS
Published May 18, 2018
·Updated
app/webroot/js/misp.js in MISP 2.4.91 has a DOM based XSS with cortex type attributes.
Affected Software
1 affected component
Misp-project Misp=2.4.91
Remediation
Event History
May 18, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-11245?
CVE-2018-11245 is a DOM based XSS vulnerability in MISP 2.4.91 with cortex type attributes.
2
What is the severity of CVE-2018-11245?
CVE-2018-11245 has a severity level of 6.1 (medium).
3
How does CVE-2018-11245 affect MISP?
CVE-2018-11245 affects MISP version 2.4.91.
4
How can I fix CVE-2018-11245?
To fix CVE-2018-11245, update your MISP installation to version 2.4.92 or later.
5
Where can I find more information about CVE-2018-11245?
More information about CVE-2018-11245 can be found in the references section of this vulnerability description.