CVE-2019-12190: XSS
Published May 21, 2019
·Updated
XSS was discovered in CentOS-WebPanel.com (aka CWP) CentOS Web Panel through 0.9.8.747 via the testacc/fileManager2.php fmcurrentdir or filename parameter.
Affected Software
1 affected component
Control-webpanel Webpanel<=0.9.8.747
Event History
May 21, 2019
CVE Published
via MITRE·05:29 PM
Data Sourced
via MITRE·05:29 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-12190?
The severity of CVE-2019-12190 is classified as Medium, as it allows for Cross-Site Scripting (XSS) attacks.
2
How do I fix CVE-2019-12190?
To fix CVE-2019-12190, update the CentOS Web Panel to a version higher than 0.9.8.747.
3
What products are affected by CVE-2019-12190?
CVE-2019-12190 affects CentOS Web Panel versions up to and including 0.9.8.747.
4
What type of vulnerability is CVE-2019-12190?
CVE-2019-12190 is a Cross-Site Scripting (XSS) vulnerability.
5
Can CVE-2019-12190 lead to data theft?
Yes, CVE-2019-12190 can potentially lead to data theft if exploited by an attacker.