Auto Generated CVE annotations [Wed Jul 13 09:47:20 UTC 2022] 🤖

patch-1
GitHub Action 2022-07-13 09:47:20 +00:00
parent b03077eeb1
commit a4c8a6865e
2 changed files with 13 additions and 2 deletions

View File

@ -9,8 +9,13 @@ info:
reference: reference:
- https://github.com/domainmod/domainmod/issues/79 - https://github.com/domainmod/domainmod/issues/79
- https://nvd.nist.gov/vuln/detail/CVE-2018-19137 - https://nvd.nist.gov/vuln/detail/CVE-2018-19137
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
cvss-score: 6.1
cve-id: CVE-2018-19137
cwe-id: CWE-79
metadata: metadata:
verified: true verified: "true"
tags: cve,cve2018,domainmod,xss,authenticated tags: cve,cve2018,domainmod,xss,authenticated
requests: requests:

View File

@ -8,8 +8,14 @@ info:
DomainMOD 4.11.01 is vulnerable to Cross Site Scripting (XSS) via /domain//admin/dw/add-server.php DisplayName parameters. DomainMOD 4.11.01 is vulnerable to Cross Site Scripting (XSS) via /domain//admin/dw/add-server.php DisplayName parameters.
reference: reference:
- https://www.exploit-db.com/exploits/45959 - https://www.exploit-db.com/exploits/45959
- https://github.com/domainmod/domainmod/issues/85
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
cvss-score: 4.8
cve-id: CVE-2018-19892
cwe-id: CWE-79
metadata: metadata:
verified: true verified: "true"
tags: cve,cve2018,domainmod,xss,authenticated tags: cve,cve2018,domainmod,xss,authenticated
requests: requests: