CVE-2019-10904
06.04.2019, 20:29
Roundup 1.6 allows XSS via the URI because frontends/roundup.cgi and roundup/cgi/wsgi_handler.py mishandle 404 errors.
| Vendor | Product | Version |
|---|---|---|
| debian | debian_linux | 8.0 |
| roundup-tracker | roundup | 1.6 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References