CVE-2019-0130: XSS
Published Jun 13, 2019
·Updated
Reflected XSS in web interface for Intel(R) Accelerated Storage Manager in Intel(R) RSTe before version 5.5.0.2015 may allow an unauthenticated user to potentially enable denial of service via network access.
Affected Software
9 affected components
Intel Rapid Storage Technology Enterprise<5.5.0.2015
Lenovo Thinkstation P520 Firmware
Lenovo Thinkstation P520
Lenovo Thinkstation P520c Firmware
Lenovo Thinkstation P520c
Lenovo Thinkstation P720 Firmware
Lenovo Thinkstation P720
Lenovo Thinkstation P920 Firmware
Lenovo Thinkstation P920
Remediation
Event History
Jun 13, 2019
CVE Published
via MITRE·03:36 PM
Data Sourced
via MITRE·03:36 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-0130?
CVE-2019-0130 is a reflected XSS vulnerability in the web interface for Intel(R) Accelerated Storage Manager in Intel(R) RSTe before version 5.5.0.2015.
2
How severe is CVE-2019-0130?
CVE-2019-0130 has a severity rating of 7.4, which is considered high.
3
What software versions are affected by CVE-2019-0130?
Intel(R) Rapid Storage Technology Enterprise before version 5.5.0.2015 is affected by CVE-2019-0130.
4
How can an unauthenticated user potentially exploit CVE-2019-0130?
An unauthenticated user can potentially enable denial of service via network access by exploiting CVE-2019-0130.
5
Where can I find more information about CVE-2019-0130?
More information about CVE-2019-0130 can be found at the following references: [link1], [link2], [link3].