Oval Definition:oval:com.ubuntu.cosmic:def:2019109130000000
Revision Date:2019-05-16Version:1
Title:CVE-2019-10913 on Ubuntu 18.10 (cosmic) - medium.
Description:In Symfony before 2.7.51, 2.8.x before 2.8.50, 3.x before 3.4.26, 4.x before 4.1.12, and 4.2.x before 4.2.7, HTTP Methods provided as verbs or using the override header may be treated as trusted input, but they are not validated, possibly causing SQL injection or XSS. This is related to symfony/http-foundation.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2019-10913
Platform(s):Ubuntu 18.10
Product(s):
Definition Synopsis
  • Ubuntu 18.10 (cosmic) is installed.
  • AND symfony: while related to the CVE in some way, a decision has been made to ignore this issue (note: 'reached end-of-life').
  • BACK