First published: Wed Dec 11 2019(Updated: )
Tableau Server 10.3 through 2019.4 on Windows and Linux allows XSS via the embeddedAuthRedirect page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tableau Server | >=10.3<=2019.4 | |
Linux Kernel | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-19719 is a vulnerability that allows XSS (cross-site scripting) attacks through the embeddedAuthRedirect page in Tableau Server versions 10.3 through 2019.4 on Windows and Linux.
CVE-2019-19719 has a severity rating of 6.1, which is considered medium.
CVE-2019-19719 affects Tableau Server versions 10.3 through 2019.4 on both Windows and Linux operating systems, allowing for XSS attacks.
No, Linux is not vulnerable to CVE-2019-19719.
No, Microsoft Windows is not vulnerable to CVE-2019-19719.
To fix CVE-2019-19719 in Tableau Server, it is recommended to upgrade to a version beyond 2019.4.
More information about CVE-2019-19719 can be found in Tableau's security bulletin: [https://community.tableau.com/community/security-bulletins/blog/2019/11/19/important-adv-2019-047-open-redirect-on-embeddedauthredirect-page]