CVE-2019-17121: XSS
Published Oct 4, 2019
·Updated
REDCap before 9.3.4 has XSS on the Customize & Manage Locking/E-signatures page via Lock Record Custom Text values.
Affected Software
1 affected component
Vanderbilt REDCap<9.3.4
Event History
Oct 4, 2019
CVE Published
via MITRE·02:29 AM
Data Sourced
via MITRE·02:29 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2019-17121.
2
What is the severity of CVE-2019-17121?
CVE-2019-17121 has a severity rating of medium.
3
How does CVE-2019-17121 affect REDCap?
CVE-2019-17121 affects REDCap versions before 9.3.4.
4
What is the Common Weakness Enumeration (CWE) ID associated with CVE-2019-17121?
The CWE ID associated with CVE-2019-17121 is CWE-79.
5
How can I fix CVE-2019-17121?
To fix CVE-2019-17121, update REDCap to version 9.3.4 or later.