phpIPAM version 1.3.2 and earlier contains a Cross Site Scripting (XSS) vulnerability in subnet-scan-telnet.php that can result in executing code in victims browser. This attack appears to be exploitable via victim visits link crafted by an attacker. This vulnerability appears to have been fixed in 1.4.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-02-04T21:00:00
Updated: 2024-08-05T03:00:19.418Z
Reserved: 2019-01-15T00:00:00
Link: CVE-2019-1000010
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2019-02-04T21:29:01.003
Modified: 2019-02-06T12:50:52.387
Link: CVE-2019-1000010
Redhat
No data.