VDB

DEBIAN-CVE-2019-1010247

DEBIAN-CVE-2019-1010247 PUBLISHED CVSS 6.099999904632568 MEDIUM

ZmartZone IAM mod_auth_openidc 2.3.10.1 and earlier is affected by: Cross Site Scripting (XSS). The impact is: Redirecting the user to a phishing page or interacting with the application on behalf of the user. The component is: File: src/mod_auth_openidc.c, Line: 3109. The fixed version is: 2.3.10.2.

Risk Scores

CVSS 3.0
6.099999904632568
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Affected Products

VendorProductVersions
Debian:13libapache2-mod-auth-openidc0, 0, 0
Debian:14libapache2-mod-auth-openidc0, 0, 0
Debian:11libapache2-mod-auth-openidc0, 0, 0
Debian:12libapache2-mod-auth-openidc0, 0, 0

Timeline

  • Jul 19, 2019 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›