oracle secure-global-desktop CVE-2018-19439 is a vulnerability in Oracle Secure Global Desktop
Published on December 13, 2018

XSS exists in the Administration Console in Oracle Secure Global Desktop 4.4 20080807152602 (but was fixed in later versions including 5.4). helpwindow.jsp has reflected XSS via all parameters, as demonstrated by the sgdadmin/faces/com_sun_web_ui/help/helpwindow.jsp windowTitle parameter.

NVD


Products Associated with CVE-2018-19439

Want to know whenever a new CVE is published for Oracle Secure Global Desktop? stack.watch will email you.

 

Exploit Probability

EPSS
38.88%
Percentile
97.25%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.