Cross-Site Search in Monorail - CVE-2018–19335

 

Cross-Site Search in Monorail - CVE-2018–19335

Published: December 4, 2018


Vulnerability identifier: #VU16227
CSH Severity: Low
CVSS v4: 4.6 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018–19335
CWE-ID: CWE-200
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to obtain potentially sensitive information.

The weakness exists due to Cross-Site Search (XS-Search) flaw in CSV downloads. A remote attacker can create a specially crafted HTML page or URL containing duplicated columns, trick the victim into visiting it and disclose vulnerable source code files and line numbers from private bug reports.

Affected software

Monorail

How to mitigate CVE-2018–19335

Update to version 2018-06-07.

Monorail - update to 2018-06-07

External References

Related Security Bulletins