nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-10227 CVE-2019-10227
MEDIUM
openITCOCKPIT 3.6.1-2 - Cross-Site Request Forgery
Record summary
CVE-2019-10227 has a selected CVSS score of 6.1 (medium); EIP currently links 1 catalogued exploit.
Description
openITCOCKPIT before 3.7.1 has reflected XSS in the 404-not-found component.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBopenITCOCKPIT 3.6.1-2 - Cross-Site Request ForgeryExploitDB exploitby Julian RittwegerNot analyzed1 file
References
3openitcockpit.ioConfirmation
https://openitcockpit.io/2019/05/21/openitcockpit-3-7-1-released openitcockpit.ioConfirmation
https://openitcockpit.io/security