4.3
CVSSv2

CVE-2019-10227

Published: 31/12/2019 Updated: 09/01/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

openITCOCKPIT prior to 3.7.1 has reflected XSS in the 404-not-found component.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

it-novum openitcockpit

Exploits

# Exploit Title: openITCOCKPIT 361-2 - CSRF 2 RCE # Google Dork: N/A # Date: 26-08-2019 # Exploit Author: Julian Rittweger # Vendor Homepage: openitcockpitio/ # Software Link: githubcom/it-novum/openITCOCKPIT/releases/tag/openITCOCKPIT-361-2 # Fixed in: 371 | githubcom/it-novum/openITCOCKPIT/releases # Version: 36 ...