← Back to CVE List

CVE-2019-11643

Published: 2019-05-08T16:29Z
Last Modified: 2024-11-21T04:21Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Persistent XSS has been found in the OneShield Policy (Dragon Core) framework before 5.1.10. Remote adversaries can inject malicious JavaScript into textboxes decorated with type string, which is subsequently stored to the applicable data store. This can be exploited remotely by both authenticated and unauthenticated users. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt