Vulnerability Details CVE-2019-16904
TeamPass 2.1.27.36 allows Stored XSS by setting a crafted password for an item in a common available folder or sharing the item with an admin. (The crafted password is exploitable when viewing the change history of the item or tapping on the item.)
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 49.8%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2019-16904
-
cpe:2.3:a:teampass:teampass:2.1.27.36