4.3
CVSSv2

CVE-2019-12461

Published: 30/05/2019 Updated: 23/06/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Web Port 1.19.1 allows XSS via the /log type parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

webport web port 1.19.1

Exploits

WebPort version 1191 suffers from multiple reflective cross site scripting vulnerabilities ...

Github Repositories

CVE-2019-12460|Reflected XSS in WebPort-v1.19.1 impacts users who open a maliciously crafted link or third-party web page.

WebPort-v1191-Reflected-XSS Reflected XSS in WebPort-v1191 impacts users who open a maliciously crafted link or third-party web page CVE-2019-12460 cvemitreorg/cgi-bin/cvenamecgi?name=CVE-2019-12460 PoC-1 To exploit vulnerability, someone could use '[server]:8090/access/setup?type="</script><script>alert('xss