vendor:
Prinect Archive System
by:
alt3kx
6.1
CVSS
MEDIUM
Reflected Cross Site Scripting (XSS)
79
CWE
Product Name: Prinect Archive System
Affected Version From: v2015 Release 2.6
Affected Version To: v2015 Release 2.6
Patch Exists: YES
Related CWE: CVE-2019-10685
CPE: a:heidelberg:prinect_archive_system:2015_release_2.6
Other Scripts:
N/A
Platforms Tested: None
2019
Reflected Cross Site Scripting (XSS) Vulnerability in Print Archive System v2015 release 2.6
A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in Print Archive System v2015 release 2.6. The user supplied input containing JavaScript is echoed back in JavaScript code in an HTML response via the "TextField" parameter.
Mitigation:
Input validation and output encoding can be used to mitigate XSS attacks.