Medium severity4.7NVD Advisory· Published Mar 18, 2020· Updated Jun 17, 2026
CVE-2019-10146
CVE-2019-10146
Description
A Reflected Cross Site Scripting flaw was found in all pki-core 10.x.x versions module from the pki-core server due to the CA Agent Service not properly sanitizing the certificate request page. An attacker could inject a specially crafted value that will be executed on the victim's browser.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
- Range: 10.x.x
- Red Hat/pki-corev5Range: all pki-core 10.x.x versions
Patches
Vulnerability mechanics
References
1- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.