CVE-2019-10146
—CVSS 3.1
4.7 medium
EPSS
<1%p50
Published
()
Modified
Description
A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.
In the news0 stories
No ingested article mentions this CVE yet.