CVE-2019-12453
MEDIUMMicroStrategy Web < 10.1 - Stored Cross-Site Scripting via FLTB Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2019-12453. PoCs published by undefinedmode.
AI-analyzed exploit summary The repository describes a stored XSS vulnerability in MicroStrategy Web prior to version 10.1 patch 10, where the FLTB parameter lacks input validation. The README provides a brief technical overview but lacks depth in exploitation details or code.
Description
In MicroStrategy Web before 10.1 patch 10, stored XSS is possible in the FLTB parameter due to missing input validation.
Exploits (1)
The repository describes a stored XSS vulnerability in MicroStrategy Web prior to version 10.1 patch 10, where the FLTB parameter lacks input validation. The README provides a brief technical overview but lacks depth in exploitation details or code.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N