CVE-2019-16956: XSS
Published Jan 4, 2021
·Updated
SolarWinds Web Help Desk 12.7.0 allows XSS via the Request Type parameter of a ticket.
Affected Software
1 affected component
SolarWinds Web Help Desk=12.7.0
Event History
Jan 4, 2021
CVE Published
via MITRE·07:56 AM
Data Sourced
via MITRE·07:56 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-16956?
The severity of CVE-2019-16956 is medium with a CVSS score of 5.4.
2
How does CVE-2019-16956 affect SolarWinds Web Help Desk?
CVE-2019-16956 allows for cross-site scripting (XSS) attacks via the Request Type parameter of a ticket in SolarWinds Web Help Desk 12.7.0.
3
How can I fix CVE-2019-16956?
To fix CVE-2019-16956, upgrade to a version of SolarWinds Web Help Desk that is not affected by the vulnerability.
4
What is the Common Weakness Enumeration (CWE) ID of CVE-2019-16956?
The CWE ID of CVE-2019-16956 is 79.
5
Where can I find more information about CVE-2019-16956?
You can find more information about CVE-2019-16956 in the following references: [link 1], [link 2], [link 3].