SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2020-13954

This webpage is vulnerable to a reflected Cross-Site Scripting (XSS) attack via the styleSheetPath, which allows a malicious actor to inject javascript into the web page.

MEDIUM 6.1EPSS 40.9%

Does this matter?

EPSS puts the probability of exploitation in the next 30 days at 40.9%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.

Description

By default, Apache CXF creates a /services page containing a listing of the available endpoint names and addresses. This webpage is vulnerable to a reflected Cross-Site Scripting (XSS) attack via the styleSheetPath, which allows a malicious actor to inject javascript into the web page. This vulnerability affects all versions of Apache CXF prior to 3.4.1 and 3.3.8. Please note that this is a separate issue to CVE-2019-17573.

CVSS 3.1
6.1 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS
40.87% probability · 99th percentile
CISA KEV
Not listed
Weakness
CWE-79
Affected
apache/cxf · netapp/snap creator framework · netapp/vasa provider for clustered data ontap · oracle/business intelligence · oracle/retail order broker cloud service · oracle/communications messaging server
Source
security@apache.org

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.