CVE-2019-18653: XSS
A Cross Site Scripting (XSS) issue exists in Avast AntiVirus (Free, Internet Security, and Premiere Edition) 19.3.2369 build 19.3.4241.440 in the Network Notification Popup, allowing an attacker to execute JavaScript code via an SSID Name.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-18653.
What is the severity level of CVE-2019-18653?
The severity level of CVE-2019-18653 is medium (6.1).
Which software versions are affected by CVE-2019-18653?
Avast AntiVirus (Free, Internet Security, and Premiere Edition) 19.3.2369 build 19.3.4241.440 is affected by CVE-2019-18653.
How does the vulnerability in Avast AntiVirus work?
The vulnerability in Avast AntiVirus allows an attacker to execute JavaScript code via an SSID Name in the Network Notification Popup.
Are there any fixes available for CVE-2019-18653?
There are no specific fixes mentioned for CVE-2019-18653, but it is recommended to keep your Avast AntiVirus software up to date to protect against known vulnerabilities.