CVE-2019-19381

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
11/03/2020
Last modified:
20/03/2020

Description

oauth/oauth2/v1/saml/ in Abacus OAuth Login 2019_01_r4_20191021_0000 before prior to R4 (20.11.2019 Hotfix) allows Reflected Cross Site Scripting (XSS) via an error message.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:abacus:abacus:2019-11-20:*:*:*:*:*:*:*