CVE-2019-8953
MEDIUMNetgate Haproxy < 0.59_16 - XSS
Title source: ruleDescription
The HAProxy package before 0.59_16 for pfSense has XSS via the desc (aka Description) or table_actionsaclN parameter, related to haproxy_listeners.php and haproxy_listeners_edit.php.
Exploits (1)
References (5)
Scores
CVSS v3
6.1
EPSS
0.7172
EPSS Percentile
98.7%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Details
CWE
CWE-79
Status
published
Products (1)
netgate/haproxy
< 0.59_16
Published
Feb 20, 2019
Tracked Since
Feb 18, 2026