CVE-2019-19856

Published
View on NVD ↗
CVSS v3
4.8
MEDIUM
CVSS v2
3.5
LOW
Affected
1
PROJECT

Description

An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. The User Type on the admin/list_user page allows stored XSS via the type parameter.

SimplE RePort wrIting and COllaboration tool
GitHubGitHub
1.11K