CVE-2019-6565

Severity
6.1MEDIUM
EPSS
0.4%
top 36.70%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 5
Latest updateMay 13

Description

Moxa IKS and EDS fails to properly validate user input, giving unauthenticated and authenticated attackers the ability to perform XSS attacks, which may be used to send a malicious script.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

Affected Packages4 packages

🔴Vulnerability Details

2
GHSA
GHSA-6hwj-585x-wxvq: Moxa IKS and EDS fails to properly validate user input, giving unauthenticated and authenticated attackers the ability to perform XSS attacks, which m2022-05-13
CVEList
CVE-2019-6565: Moxa IKS and EDS fails to properly validate user input, giving unauthenticated and authenticated attackers the ability to perform XSS attacks, which m2019-03-05
CVE-2019-6565 (MEDIUM CVSS 6.1) | Moxa IKS and EDS fails to properly | cvebase.io