CVE-2019-19587: XSS
Published Dec 4, 2019
·Updated
In WSO2 Enterprise Integrator 6.5.0, reflected XSS occurs when updating the message processor configuration from the source view in the Management Console.
Affected Software
1 affected component
WSO2 Enterprise Integrator=6.5.0
Remediation
Event History
Dec 4, 2019
CVE Published
via MITRE·11:56 PM
Data Sourced
via MITRE·11:56 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2019-19587?
CVE-2019-19587 is a reflected XSS vulnerability that occurs when updating the message processor configuration from the source view in WSO2 Enterprise Integrator 6.5.0.
2
How severe is CVE-2019-19587?
CVE-2019-19587 has a severity rating of 6.1 (medium).
3
How does CVE-2019-19587 affect WSO2 Enterprise Integrator?
CVE-2019-19587 affects WSO2 Enterprise Integrator version 6.5.0.
4
What is the Common Weakness Enumeration (CWE) for CVE-2019-19587?
CVE-2019-19587 is classified under CWE-79, which is Cross-Site Scripting (XSS).
5
How can I fix CVE-2019-19587?
To fix CVE-2019-19587, update to a patched version of WSO2 Enterprise Integrator.