355
VMScore

CVE-2019-15814

Published: 04/09/2019 Updated: 04/09/2019
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 355
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Multiple stored XSS vulnerabilities in Sentrifugo 3.2 could allow authenticated users to inject arbitrary web script or HTML.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sentrifugo sentrifugo 3.2

Exploits

# Exploit Title: Sentrifugo 32 - Persistent Cross-Site Scripting # Google Dork: N/A # Date: 8/29/2019 # Exploit Author: creosote # Vendor Homepage: wwwsentrifugocom/ # Version: 32 # Tested on: Ubuntu 1804 # CVE : CVE-2019-15814 Multiple Stored XSS vulnerabilities were found in Sentrifugo 32 In most test cases session riding was also ...
Sentrifugo version 32 suffers from a persistent cross site scripting vulnerability ...