CVE-2018-15512: XSS
Published Aug 29, 2019
·Updated
Cross-site scripting (XSS) vulnerability in the 'Authorisation Service' feature of totemomail 6.0.0 build 570 allows remote attackers to inject arbitrary web script or HTML.
Affected Software
1 affected component
Totemo Totemomail=6.0.0-570
Event History
Aug 29, 2019
CVE Published
via MITRE·09:17 PM
Data Sourced
via MITRE·09:17 PM
Description
Frequently Asked Questions
1
What is CVE-2018-15512?
CVE-2018-15512 is a cross-site scripting (XSS) vulnerability in the 'Authorisation Service' feature of totemomail 6.0.0 build 570.
2
How does CVE-2018-15512 affect totemomail?
CVE-2018-15512 allows remote attackers to inject arbitrary web scripts or HTML in totemomail.
3
What is the severity of CVE-2018-15512?
The severity of CVE-2018-15512 is medium with a CVSS score of 6.1.
4
How can I fix CVE-2018-15512 in totemomail?
To fix CVE-2018-15512, you should apply the latest patch or update provided by totemomail.
5
Where can I find more information about CVE-2018-15512?
You can find more information about CVE-2018-15512 at the following link: [Context IS Advisory](https://www.contextis.com/en/resources/advisories/cve-2018-15512)