CVE-2018-15511: XSS
Published Aug 29, 2019
·Updated
Cross-site scripting (XSS) vulnerability in the 'Notification template' feature of totemomail 6.0.0 build 570 allows remote attackers to inject arbitrary web script or HTML.
Affected Software
1 affected component
Totemo Totemomail=6.0.0-570
Event History
Aug 29, 2019
CVE Published
via MITRE·09:31 PM
Data Sourced
via MITRE·09:31 PM
Description
Frequently Asked Questions
1
What is CVE-2018-15511?
CVE-2018-15511 is a cross-site scripting (XSS) vulnerability in the 'Notification template' feature of totemomail 6.0.0 build 570.
2
How does CVE-2018-15511 affect totemomail?
CVE-2018-15511 allows remote attackers to inject arbitrary web script or HTML.
3
What is the severity level of CVE-2018-15511?
The severity level of CVE-2018-15511 is medium with a CVSS score of 6.1.
4
How can I fix CVE-2018-15511?
To fix CVE-2018-15511, you should update totemomail to a version that is not affected by this vulnerability.
5
Where can I find more information about CVE-2018-15511?
You can find more information about CVE-2018-15511 at the following reference: https://www.contextis.com/en/resources/advisories/cve-2018-15511