CVE-2019-17432: XSS
Published Oct 10, 2019
·Updated
An issue was discovered in fastadmin 1.0.0.20190705beta. There is a public/admin/general.config/edit CSRF vulnerability, as demonstrated by resultant XSS via the row[name] parameter.
Affected Software
1 affected component
fastadmin FastAdmin=1.0.0.20190705-beta
Event History
Oct 10, 2019
CVE Published
via MITRE·11:15 AM
Data Sourced
via MITRE·11:15 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-17432?
CVE-2019-17432 has a moderate severity rating due to its ability to potentially lead to Cross-Site Scripting (XSS) vulnerabilities.
2
How do I fix CVE-2019-17432?
To fix CVE-2019-17432, update the fastadmin software to a version that addresses this CSRF vulnerability.
3
What components are affected by CVE-2019-17432?
CVE-2019-17432 specifically affects Fastadmin version 1.0.0.20190705-beta.
4
What type of vulnerability is CVE-2019-17432?
CVE-2019-17432 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
Can CVE-2019-17432 lead to XSS attacks?
Yes, CVE-2019-17432 can be exploited to perform XSS attacks via the row[name] parameter.