CVE-2019-19913: XSS
Published Mar 30, 2020
·Updated
In Intland codeBeamer ALM 9.5 and earlier, there is stored XSS via the Trackers Title parameter.
Affected Software
1 affected component
Intland codeBeamer<=9.5
Event History
Mar 30, 2020
CVE Published
via MITRE·09:26 PM
Data Sourced
via MITRE·09:26 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-19913.
2
What is the severity level of CVE-2019-19913?
The severity level of CVE-2019-19913 is medium.
3
How does the vulnerability occur in Intland codeBeamer ALM?
The vulnerability occurs through stored cross-site scripting (XSS) via the Trackers Title parameter in Intland codeBeamer ALM 9.5 and earlier.
4
Which version of Intland codeBeamer ALM is affected by CVE-2019-19913?
Intland codeBeamer ALM 9.5 and earlier versions are affected by CVE-2019-19913.
5
How can I mitigate the vulnerability in Intland codeBeamer ALM?
To mitigate the vulnerability, it is recommended to update to a version of Intland codeBeamer ALM that is not affected by CVE-2019-19913.