Vulnerability Details CVE-2018-19913
DomainMOD through 4.11.01 has XSS via the assets/add/registrar-accounts.php UserName, Reseller ID, or notes field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 44.8%
CVSS Severity
CVSS v3 Score 4.8
CVSS v2 Score 3.5
Products affected by CVE-2018-19913
-
cpe:2.3:a:domainmod:domainmod:4.09.03
-
cpe:2.3:a:domainmod:domainmod:4.10.0
-
cpe:2.3:a:domainmod:domainmod:4.11.0
-
cpe:2.3:a:domainmod:domainmod:4.11.01