ZeroHour

CVE-2019-15233

PoC
CVSS 3.1
6.1 medium
EPSS
1%p66
Published
()
Modified
Description

The Live:Text Box macro in the Old Street Live Input Macros app before 2.11 for Confluence has XSS, leading to theft of the Administrator Session Cookie.

Vendors
oldstreetsolutions
Products
live input macros
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.