Back to Database
Status published
Medium
CVE-2018-19773
Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1...
Vulnerability Description
Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentUser.jsp" has reflected XSS via the GroupId and ConnPoolName parameters.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-19773
Credits & Attribution
No credits recorded in the NVD database.
References
More from infovista
View All →CVE-2018-19822
Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1...
Medium
6.1
CVE-2018-19821
Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1...
Medium
6.1
CVE-2018-19820
Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1...
Medium
6.1
CVE-2018-19819
Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1...
Medium
6.1
CVE-2018-19818
Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1...
Medium
6.1
Affected Vendor
infovista
View all reports →Affected Software
vistaportal
Vulnerable Versions:
5.1
Timeline
Official Publish:
December 17th, 2018
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.