CVE Database
/

CVE-2019-1010008

Back to search

CVE-2019-1010008

Published: Jul 15, 2019

Modified: Aug 5, 2024

PUBLISHED

Description

OpenEnergyMonitor Project Emoncms 9.8.8 is affected by: Cross Site Scripting (XSS). The impact is: Theoretically low, but might potentially enable persistent XSS (user could embed mal. code). The component is: Javascript code execution in "Name", "Location", "Bio" and "Starting Page" fields in the "My Account" page. File: Lib/listjs/list.js, line 67. The attack vector is: unknown, victim must open profile page if persistent was possible.

VendorProductVersions

OpenEnergyMonitor Project

Emoncms

affected
9.8.8

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now