CVE-2018-14890: XSS
Published Sep 21, 2018
·Updated
Vectra Networks Cognito Brain and Sensor before 4.2 contains a cross-site scripting (XSS) vulnerability in the Web Management Console.
Affected Software
1 affected component
Vectra Cognito<4.2
Event History
Sep 21, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-14890?
CVE-2018-14890 is a cross-site scripting (XSS) vulnerability in Vectra Networks Cognito Brain and Sensor before version 4.2.
2
What is the severity of CVE-2018-14890?
The severity of CVE-2018-14890 is medium with a CVSS score of 5.4.
3
How does CVE-2018-14890 affect Vectra Networks Cognito?
CVE-2018-14890 affects Vectra Networks Cognito Brain and Sensor before version 4.2 by allowing cross-site scripting (XSS) attacks through the Web Management Console.
4
How can I fix CVE-2018-14890?
To fix CVE-2018-14890, it is recommended to upgrade Vectra Networks Cognito Brain and Sensor to version 4.2 or above.
5
Where can I find more information about CVE-2018-14890?
More information about CVE-2018-14890 can be found at the following link: [CVE-2018-14890](https://vectra.ai/security-advisories).