CyberRota Analysis
AI analysis pending.
CVE
CVE-2019-10180
Severity
LOW
CVSS
2.4
EPSS
0.74%
Java
Original NVD Description
A vulnerability was found in all pki-core 10.x.x version, where the Token Processing Service (TPS) did not properly sanitize several parameters stored for the tokens, possibly resulting in a Stored Cross Site Scripting (XSS) vulnerability. An attacker able to modify the parameters of any token could use this flaw to trick an authenticated user into executing arbitrary JavaScript code.