Vulnerability Details CVE-2018-16243
SolarWinds Database Performance Analyzer (DPA) 11.1.468 and 12.0.3074 have several persistent XSS vulnerabilities, related to logViewer.iwc, centralManage.cen, userAdministration.iwc, database.iwc, alertManagement.iwc, eventAnnotations.iwc, and central.cen.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.014
EPSS Ranking 68.1%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2018-16243
-
cpe:2.3:a:solarwinds:database_performance_analyzer:11.1.468
-
cpe:2.3:a:solarwinds:database_performance_analyzer:12.0.3074