Description
A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize certain error messages, aka 'Active Directory Federation Services XSS Vulnerability'.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-9838 | A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize certain error messages, aka 'Active Directory Federation Services XSS Vulnerability'. |
References
History
No history.
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2024-08-04T18:13:30.348Z
Reserved: 2018-11-26T00:00:00.000Z
Link: CVE-2019-1273
No data.
Status : Modified
Published: 2019-09-11T22:15:17.507
Modified: 2026-06-17T02:28:17.093
Link: CVE-2019-1273
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD