Description
TeamPass 2.1.27.36 allows Stored XSS by placing a payload in the username field during a login attempt. When an administrator looks at the log of failed logins, the XSS payload will be executed.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5323 | TeamPass 2.1.27.36 allows Stored XSS by placing a payload in the username field during a login attempt. When an administrator looks at the log of failed logins, the XSS payload will be executed. |
Github GHSA |
GHSA-v969-5v7f-pmg2 | TeamPass Stored Cross-site Scripting |
References
| Link | Providers |
|---|---|
| https://github.com/nilsteampassnet/TeamPass/issues/2688 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T01:33:17.182Z
Reserved: 2019-10-05T00:00:00.000Z
Link: CVE-2019-17205
No data.
Status : Modified
Published: 2019-10-05T22:15:11.937
Modified: 2024-11-21T04:31:51.430
Link: CVE-2019-17205
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA