Reflected XSS in web interface for Intel(R) Accelerated Storage Manager in Intel(R) RSTe before version 5.5.0.2015 may allow an unauthenticated user to potentially enable denial of service via network access.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/108775 | Broken Link Third Party Advisory VDB Entry |
https://support.lenovo.com/us/en/product_security/LEN-27843 | Third Party Advisory |
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00226.html | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Information
Published : 2019-06-13 09:29
Updated : 2023-03-02 08:15
NVD link : CVE-2019-0130
Mitre link : CVE-2019-0130
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
lenovo
- thinkstation_p920_firmware
- thinkstation_p920
- thinkstation_p720_firmware
- thinkstation_p720
- thinkstation_p520_firmware
- thinkstation_p520c_firmware
- thinkstation_p520
- thinkstation_p520c
intel
- rapid_storage_technology_enterprise