ZeroHour

CVE-2018-14875

PoC
CVSS 3.0
5.4 medium
EPSS
<1%p49
Published
()
Modified
Description

An issue was discovered in the Core and Portal modules in Polaris FT Intellect Core Banking 9.7.1. Reflected XSS exists with an authenticated session via the Customerid, formName, FrameId, or MODE parameter.

Vendors
polarisft
Products
intellect core banking
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.