Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-11454

Persistent cross-site scripting (XSS) in http/cervlet.c in Tildeslash Monit before 5.25.3 allows a remote unauthenticated attacker to introduce arbitrary JavaScript via manipulation of an unsanitized user field of the Authorization header for HTTP Basic Authentication, which is mishandled during an _viewlog operation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.015
EPSS Ranking 80.6%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
References
Products affected by CVE-2019-11454
  • Mmonit » Monit » Version: 5.10.0
    cpe:2.3:a:mmonit:monit:5.10.0
  • Mmonit » Monit » Version: 5.11.0
    cpe:2.3:a:mmonit:monit:5.11.0
  • Mmonit » Monit » Version: 5.12.2
    cpe:2.3:a:mmonit:monit:5.12.2
  • Mmonit » Monit » Version: 5.13.0
    cpe:2.3:a:mmonit:monit:5.13.0
  • Mmonit » Monit » Version: 5.14.0
    cpe:2.3:a:mmonit:monit:5.14.0
  • Mmonit » Monit » Version: 5.15.0
    cpe:2.3:a:mmonit:monit:5.15.0
  • Mmonit » Monit » Version: 5.16.0
    cpe:2.3:a:mmonit:monit:5.16.0
  • Mmonit » Monit » Version: 5.17.0
    cpe:2.3:a:mmonit:monit:5.17.0
  • Mmonit » Monit » Version: 5.17.1
    cpe:2.3:a:mmonit:monit:5.17.1
  • Mmonit » Monit » Version: 5.18.0
    cpe:2.3:a:mmonit:monit:5.18.0
  • Mmonit » Monit » Version: 5.19.0
    cpe:2.3:a:mmonit:monit:5.19.0
  • Mmonit » Monit » Version: 5.20.0
    cpe:2.3:a:mmonit:monit:5.20.0
  • Mmonit » Monit » Version: 5.21.0
    cpe:2.3:a:mmonit:monit:5.21.0
  • Mmonit » Monit » Version: 5.22.0
    cpe:2.3:a:mmonit:monit:5.22.0
  • Mmonit » Monit » Version: 5.23.0
    cpe:2.3:a:mmonit:monit:5.23.0
  • Mmonit » Monit » Version: 5.24.0
    cpe:2.3:a:mmonit:monit:5.24.0
  • Mmonit » Monit » Version: 5.25.0
    cpe:2.3:a:mmonit:monit:5.25.0
  • Mmonit » Monit » Version: 5.25.1
    cpe:2.3:a:mmonit:monit:5.25.1
  • Mmonit » Monit » Version: 5.25.2
    cpe:2.3:a:mmonit:monit:5.25.2
  • Mmonit » Monit » Version: 5.7.0
    cpe:2.3:a:mmonit:monit:5.7.0
  • Mmonit » Monit » Version: 5.8.0
    cpe:2.3:a:mmonit:monit:5.8.0
  • Mmonit » Monit » Version: 5.8.1
    cpe:2.3:a:mmonit:monit:5.8.1
  • Mmonit » Monit » Version: 5.9.0
    cpe:2.3:a:mmonit:monit:5.9.0
  • Canonical » Ubuntu Linux » Version: 18.10
    cpe:2.3:o:canonical:ubuntu_linux:18.10
  • Canonical » Ubuntu Linux » Version: 19.04
    cpe:2.3:o:canonical:ubuntu_linux:19.04
  • Debian » Debian Linux » Version: 8.0
    cpe:2.3:o:debian:debian_linux:8.0
  • Debian » Debian Linux » Version: 9.0
    cpe:2.3:o:debian:debian_linux:9.0
  • Fedoraproject » Fedora » Version: 31
    cpe:2.3:o:fedoraproject:fedora:31
  • Fedoraproject » Fedora » Version: 32
    cpe:2.3:o:fedoraproject:fedora:32


Contact Us

Shodan ® - All rights reserved