Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2019-10846
Computrols CBAS 18.0.0 allows Unauthenticated Reflected Cross-Site Scripting vulnerabilities in the login page and password reset page via the username GET parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.023
EPSS Ranking
84.1%
CVSS Severity
CVSS v3 Score
6.1
CVSS v2 Score
4.3
References
http://packetstormsecurity.com/files/155257/Computrols-CBAS-Web-19.0.0-Cross-Site-Scripting.html
https://applied-risk.com/index.php/download_file/view/196/165
https://applied-risk.com/labs/advisories
http://packetstormsecurity.com/files/155257/Computrols-CBAS-Web-19.0.0-Cross-Site-Scripting.html
https://applied-risk.com/index.php/download_file/view/196/165
https://applied-risk.com/labs/advisories
Products affected by CVE-2019-10846
Computrols
»
Computrols Building Automation System
»
Version:
15.0.0
cpe:2.3:a:computrols:computrols_building_automation_system:15.0.0
Computrols
»
Computrols Building Automation System
»
Version:
15.0.1
cpe:2.3:a:computrols:computrols_building_automation_system:15.0.1
Computrols
»
Computrols Building Automation System
»
Version:
18.0.0
cpe:2.3:a:computrols:computrols_building_automation_system:18.0.0
Computrols
»
Computrols Building Automation System
»
Version:
18.0.1
cpe:2.3:a:computrols:computrols_building_automation_system:18.0.1
Computrols
»
Computrols Building Automation System
»
Version:
19.0.0
cpe:2.3:a:computrols:computrols_building_automation_system:19.0.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved