ZeroHour

CVE-2019-11776

PoC
CVSS 3.1
6.1 medium
EPSS
<1%p57
Published
()
Modified
Description

In Eclipse BIRT versions 1.0 to 4.7, the Report Viewer allows Reflected XSS in URL parameter. Attacker can execute the payload in victim's browser context.

Vendors
eclipse
Products
business intelligence and reporting tools
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.