Learn about CVE-2019-13935 affecting Siemens AG Polarion. This 'Cross-site Scripting' vulnerability impacts all versions below 19.2, allowing attackers to exploit reflected XSS. Find mitigation steps here.
Siemens AG Polarion is affected by a 'Cross-site Scripting' vulnerability that could allow attackers to exploit reflected XSS. This vulnerability impacts all versions of Polarion below 19.2.
Understanding CVE-2019-13935
This CVE involves a 'Cross-site Scripting' vulnerability in Siemens AG Polarion, potentially enabling attackers to exploit reflected XSS.
What is CVE-2019-13935?
The vulnerability in the webclient of Siemens AG Polarion allows attackers to execute reflected XSS attacks, affecting all versions of Polarion prior to version 19.2.
The Impact of CVE-2019-13935
The presence of this vulnerability poses a low severity risk with a CVSS base score of 3.5. Attackers can manipulate web pages to execute malicious scripts, potentially compromising user data.
Technical Details of CVE-2019-13935
Siemens AG Polarion is susceptible to a 'Cross-site Scripting' vulnerability, as detailed below:
Vulnerability Description
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
Taking immediate steps and implementing long-term security practices are crucial to mitigate the risks associated with CVE-2019-13935.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates