CVE-2019-18859: XSS
Published Jan 9, 2020
·Updated
Digi AnywhereUSB 14 allows XSS via a link for the Digi Page.
Affected Software
2 affected components
Digi Anywhereusb\/14 Firmware=1.93.21.19
Digi Anywhereusb\/14
Event History
Jan 9, 2020
CVE Published
via MITRE·08:07 PM
Data Sourced
via MITRE·08:07 PM
Description
Frequently Asked Questions
1
What is CVE-2019-18859?
CVE-2019-18859 is a vulnerability in Digi AnywhereUSB 14 that allows for cross-site scripting (XSS) attacks via a link on the Digi Page.
2
How severe is CVE-2019-18859?
CVE-2019-18859 has a severity value of 6.1, which is considered medium.
3
Where can I find more information about CVE-2019-18859?
You can find more information about CVE-2019-18859 at the following references: [link1], [link2].
4
What is the affected software for CVE-2019-18859?
The affected software for CVE-2019-18859 is Digi AnywhereUSB 14 with firmware version 1.93.21.19.
5
How can I fix CVE-2019-18859?
To fix CVE-2019-18859, it is recommended to update Digi AnywhereUSB 14 firmware to a version that addresses the vulnerability.