CVE-2019-20441: XSS
Published Jan 27, 2020
·Updated
An issue was discovered in WSO2 API Manager 2.6.0. A potential Stored Cross-Site Scripting (XSS) vulnerability has been identified in the 'implement phase' of the API Publisher.
Affected Software
1 affected component
WSO2 API Manager=2.6.0
Event History
Jan 27, 2020
CVE Published
via MITRE·11:37 PM
Data Sourced
via MITRE·11:37 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2019-20441?
CVE-2019-20441 is a vulnerability discovered in WSO2 API Manager 2.6.0 that allows for potential Stored Cross-Site Scripting (XSS) attacks in the 'implement phase' of the API Publisher.
2
How severe is CVE-2019-20441?
CVE-2019-20441 has a severity rating of 4.8 out of 10, indicating a medium level of risk.
3
What software is affected by CVE-2019-20441?
WSO2 API Manager version 2.6.0 is affected by CVE-2019-20441.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2019-20441?
The CWE ID for CVE-2019-20441 is 79.
5
How can I fix CVE-2019-20441?
To fix CVE-2019-20441, it is recommended to update to a patched version of WSO2 API Manager.