CVE-2019-16195: XSS
Published Nov 26, 2019
·Updated
Centreon before 2.8.30, 18.x before 18.10.8, and 19.x before 19.04.5 allows XSS via myAccount alias and name fields.
Affected Software
3 affected components
Centreon Centreon>=2.8.0<2.8.30
Centreon Centreon>=18.0.0<18.10.8
Centreon Centreon>=19.0.0<19.04.5
Remediation
Patch Available
Patch Available
Event History
Nov 26, 2019
CVE Published
via MITRE·05:03 PM
Data Sourced
via MITRE·05:03 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-16195.
2
What is the severity level of CVE-2019-16195?
The severity level of CVE-2019-16195 is medium.
3
How does CVE-2019-16195 allow XSS?
CVE-2019-16195 allows XSS through the myAccount alias and name fields.
4
Which versions of Centreon are affected by CVE-2019-16195?
Centreon before 2.8.30, 18.x before 18.10.8, and 19.x before 19.04.5 are affected by CVE-2019-16195.
5
Are there any patches or fixes available for CVE-2019-16195?
Yes, patches and fixes have been released. It is recommended to update Centreon to version 2.8.30, 18.x to version 18.10.8, or 19.x to version 19.04.5 to fix this vulnerability.