Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-10241

In Eclipse Jetty version 9.2.26 and older, 9.3.25 and older, and 9.4.15 and older, the server is vulnerable to XSS conditions if a remote client USES a specially formatted URL against the DefaultServlet or ResourceHandler that is configured for showing a Listing of directory contents.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.242
EPSS Ranking 95.8%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
References
Products affected by CVE-2019-10241


Contact Us

Shodan ® - All rights reserved