Reflected XSS Vulnerability in Matrix42 Workspace Management Software
CVE-2019-19390
5.4MEDIUM
What is CVE-2019-19390?
The Software Catalogue section of Matrix42 Workspace Management fails to filter the Search parameter properly, leading to multiple reflected XSS vulnerabilities. Attackers can exploit this flaw by crafting malicious requests that are executed in the context of the affected user's session, allowing for the potential theft of sensitive information or session hijacking. Users are advised to ensure they are using updated versions of the software and apply security best practices to mitigate risks.
