CVE-2018-20850: XSS
Published Jul 4, 2019
·Updated
Stormshield Network Security 2.0.0 through 2.13.0 and 3.0.0 through 3.7.1 has self-XSS in the command line interface of the SNS web server.
Affected Software
2 affected components
Stormshield Stormshield Network Security>=2.0.0<=2.13.0
Stormshield Stormshield Network Security>=3.0.0<=3.7.1
Event History
Jul 4, 2019
CVE Published
via MITRE·01:16 PM
Data Sourced
via MITRE·01:16 PM
Description
Frequently Asked Questions
1
What is CVE-2018-20850?
CVE-2018-20850 is a vulnerability in Stormshield Network Security that allows for self-XSS in the command line interface of the SNS web server.
2
How severe is CVE-2018-20850?
CVE-2018-20850 has a severity rating of 8.2 (high).
3
How does CVE-2018-20850 affect Stormshield Network Security?
CVE-2018-20850 affects Stormshield Network Security versions 2.0.0 through 2.13.0 and 3.0.0 through 3.7.1.
4
How can I fix CVE-2018-20850?
To fix CVE-2018-20850, it is recommended to update Stormshield Network Security to a version that is not affected by the vulnerability.
5
Where can I find more information about CVE-2018-20850?
You can find more information about CVE-2018-20850 at the following reference: https://advisories.stormshield.eu/2018-006/