Vulnerability Details CVE-2018-16960
An issue was discovered in Open XDMoD through 7.5.0. html/gui/general/login.php has Reflected XSS via the xd_user_formal_name parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 47.5%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2018-16960
-
cpe:2.3:a:buffalo:open_xdmod:3.5.0
-
cpe:2.3:a:buffalo:open_xdmod:4.5.0
-
cpe:2.3:a:buffalo:open_xdmod:4.5.1
-
cpe:2.3:a:buffalo:open_xdmod:4.5.2
-
cpe:2.3:a:buffalo:open_xdmod:5.0.0
-
cpe:2.3:a:buffalo:open_xdmod:5.5.0
-
cpe:2.3:a:buffalo:open_xdmod:5.6.0
-
cpe:2.3:a:buffalo:open_xdmod:6.5.0
-
cpe:2.3:a:buffalo:open_xdmod:6.6.0
-
cpe:2.3:a:buffalo:open_xdmod:7.0.0
-
cpe:2.3:a:buffalo:open_xdmod:7.0.1
-
cpe:2.3:a:buffalo:open_xdmod:7.1.0
-
cpe:2.3:a:buffalo:open_xdmod:7.5.0