4.3
CVSSv2

CVE-2019-6804

Published: 25/01/2019 Updated: 01/09/2021
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

An XSS issue exists on the Job Edit page in Rundeck Community Edition prior to 3.0.13, related to assets/javascripts/workflowStepEditorKO.js and views/execution/_wfitemEdit.gsp.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

pagerduty rundeck

Exploits

# Exploit Title: Rundeck Community Edition before 3013 Multiple Stored XSS # Vendor Homepage: wwwrundeckcom/open-source # Software Link: docsrundeckcom/downloadshtml # Exploit Author: Ishaq Mohammed # Contact: twittercom/security_prince # Website: aboutme/security-prince # Category: webapps # Platform: Java ...