4.3
CVSSv2

CVE-2019-10846

Published: 23/05/2019 Updated: 13/07/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Computrols CBAS 18.0.0 allows Unauthenticated Reflected Cross-Site Scripting vulnerabilities in the login page and password reset page via the username GET parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

computrols computrols building automation system

Exploits

Computrols CBAS-Web versions 1900 and below suffer from a reflective cross site scripting vulnerability ...