CVE-2018-8900 PUBLISHED CVSS 6.099999904632568 MEDIUM

The License Manager service of HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE 7.80 allows remote attackers to inject malicious web script in the logs page of Admin Control Center (ACC) for cross-site scripting (XSS) vulnerability.

EPSS 0.25% · 48.2th percentile

Risk Scores

CVSS v3.0
6.099999904632568
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS Score
0.25%
48.2th percentile

Affected Products

VendorProductVersions
gemaltosentinel_ldk_rte0
n/an/an/a

Timeline

References

Open in Interactive Console →