Vulnerabilities > Matrix42

DATE CVE VULNERABILITY TITLE RISK
2020-04-15 CVE-2019-19390 Cross-site Scripting vulnerability in Matrix42 Workspace Management 9.1.2.2765
The Search parameter of the Software Catalogue section of Matrix42 Workspace Management 9.1.2.2765 and below accepts unfiltered parameters that lead to multiple reflected XSS issues.
network
low complexity
matrix42 CWE-79
5.4
2020-04-15 CVE-2019-19500 Cross-site Scripting vulnerability in Matrix42 Workspace Management 9.1.2.2765
Matrix42 Workspace Management 9.1.2.2765 and below allows stored XSS via unfiltered description parameters, as demonstrated by the comment field of a special order for individual software.
network
low complexity
matrix42 CWE-79
5.4