First published: Wed Sep 14 2022(Updated: )
Cross Site Scripting (XSS) vulnerability in configMap parameters in Yellowfin Business Intelligence 7.3 allows remote attackers to run arbitrary code via MIAdminStyles.i4 Admin UI.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Yellowfin Business Intelligence | =7.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-19587 is classified as a high severity Cross Site Scripting (XSS) vulnerability.
To fix CVE-2020-19587, ensure to upgrade to the latest version of Yellowfin Business Intelligence that addresses this vulnerability.
CVE-2020-19587 specifically affects Yellowfin Business Intelligence version 7.3.
Yes, CVE-2020-19587 can be exploited remotely by attackers to execute arbitrary code.
CVE-2020-19587 can facilitate Cross Site Scripting (XSS) attacks through the manipulation of configMap parameters.