CVE-2019-16954: XSS
SolarWinds Web Help Desk 12.7.0 allows HTML injection via a Comment in a Help Request ticket.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-16954?
CVE-2019-16954 is a vulnerability in SolarWinds Web Help Desk 12.7.0 that allows HTML injection via a Comment in a Help Request ticket.
How severe is CVE-2019-16954?
CVE-2019-16954 has a severity rating of 5.4 (medium).
How does CVE-2019-16954 affect SolarWinds Web Help Desk?
CVE-2019-16954 affects SolarWinds Web Help Desk 12.7.0 by allowing HTML injection via a Comment in a Help Request ticket.
Can CVE-2019-16954 be fixed?
Yes, CVE-2019-16954 can be fixed by applying the necessary patches or updates provided by SolarWinds.
Where can I find more information about CVE-2019-16954?
You can find more information about CVE-2019-16954 in the references provided: [https://support.solarwinds.com/SuccessCenter/s/](https://support.solarwinds.com/SuccessCenter/s/), [https://www.esecforte.com/html-injection-vulnerability-in-solarwinds-web-help-desk/](https://www.esecforte.com/html-injection-vulnerability-in-solarwinds-web-help-desk/), [https://www.solarwinds.com/free-tools/free-help-desk-software](https://www.solarwinds.com/free-tools/free-help-desk-software).