Medium severity6.3NVD Advisory· Published Mar 30, 2020· Updated Jun 17, 2026
CVE-2019-9509
CVE-2019-9509
Description
The web interface of the Vertiv Avocent UMG-4000 version 4.2.1.19 is vulnerable to reflected XSS in an HTTP POST parameter. The web application does not neutralize user-controllable input before displaying to users in a web page, which could allow a remote attacker authenticated with a user account to execute arbitrary code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:vertiv:avocent_umg-4000_firmware:4.2.1.19:*:*:*:*:*:*:*
4.2.1.19+ 1 more
- (no CPE)range: 4.2.1.19
- (no CPE)range: 4.2.1.19
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.