undefinedmode/CVE-2019-12453

undefinedmode/CVE-2019-12453

Releases0
Authenticated XSS in Microstrategy Web - Versions prior to 10.1 patch 10

CVE History

CVEPublishedCVSS v3CVSS v2
4.3 MEDIUM

In MicroStrategy Web before 10.1 patch 10, stored XSS is possible in the FLTB parameter due to missing input validation.