First published: Tue Mar 05 2019(Updated: )
A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka 'Team Foundation Server Cross-site Scripting Vulnerability'. This CVE ID is unique from CVE-2019-0743.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Team Foundation Server | =2018-3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0742 is a Cross-site Scripting (XSS) vulnerability in Team Foundation Server where user input is not properly sanitized.
CVE-2019-0742 has a severity score of 5.4, which is considered medium severity.
CVE-2019-0742 affects versions 2018-3.2 of Microsoft Team Foundation Server.
To fix CVE-2019-0742, apply the necessary security patches provided by Microsoft for the affected version of Team Foundation Server.
You can find more information about CVE-2019-0742 in the following references: [1] http://www.securityfocus.com/bid/106967 [2] https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0742