ZeroHour

CVE-2019-12863

PoC
CVSS 3.1
4.8 medium
EPSS
1%p63
Published
()
Modified
Description

SolarWinds Orion Platform 2018.4 HF3 (NPM 12.4, NetPath 1.1.4) allows Stored HTML Injection by administrators via the Web Console Settings screen.

Vendors
solarwinds
Products
netpath, network performance monitor, orion platform
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.