infovista 関連製品全体の CVE とセキュリティ脆弱性情報を集約し、CVSS、EPSS、公開日、脆弱性情報データを掲載しています。
公開された問題は vendor risk cross-site scripting に関連することが多く、vendor surface software deployment and vendor surface production workloads の文脈で vendor impact session compromise などの暴露リスクを伴う場合があります。
掲載データは公開脆弱性情報とセキュリティ公告に基づき、過去の暴露面と修補優先度の評価に利用できます。
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2018-19822 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/SharedCriteria.jsp" has reflected XSS via the ConnPoolName or GroupId parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19821 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/SecurityPolicies.jsp" has reflected XSS via the ConnPoolName parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19820 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Roles.jsp" has reflected XSS via the ConnPoolName parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19819 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Rights.jsp" has reflected XSS via the ConnPoolName parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19818 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Contacts.jsp" has reflected XSS via the ConnPoolName parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19817 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/AdminAuthorisationFrame.jsp" has reflected XSS via the ConnPoolName or GroupId parameter. | [email protected] | 6.1 | 1.06% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19816 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/categorytree/ChooseCategory.jsp" has reflected XSS via the ConnPoolName parameter. | [email protected] | 6.1 | 1.06% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19815 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/UserPopupAddNewProp.jsp" has reflected XSS via the ConnPoolName parameter. | [email protected] | 6.1 | 1.06% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19814 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Subscriptions.jsp" has reflected XSS via the ConnPoolName or GroupId parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19813 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Subscribers.jsp" has reflected XSS via the ConnPoolName or GroupId parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19812 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/SubFolderPackages.jsp" has reflected XSS via the GroupId parameter. | [email protected] | 6.1 | 1.06% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19811 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/Import.jsp" has reflected XSS via the ConnPoolName parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19810 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/GroupMove.jsp" has reflected XSS via the ConnPoolName, GroupId, or type parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19809 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "/VPortal/mgtconsole/GroupCopy.jsp" has reflected XSS via the ConnPoolName, GroupId, or type parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19775 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "Variables.jsp" has reflected XSS via the ConnPoolName and GroupId parameters. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19774 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "PresentSpace.jsp" has reflected XSS via the GroupId and ConnPoolName parameters. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19773 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentUser.jsp" has reflected XSS via the GroupId and ConnPoolName parameters. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19772 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentPresentSpace.jsp" has reflected XSS via the ConnPoolName, GroupId, and ParentId parameters. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19771 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentPool.jsp" has reflected XSS via the PropName parameter. | [email protected] | 6.1 | 1.06% | 2018-12-17 | 2026-06-16 |
| CVE-2018-19770 | Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "Users.jsp" has reflected XSS via the ConnPoolName parameter. | [email protected] | 6.1 | 1.08% | 2018-12-17 | 2026-06-16 |