Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-5641


Rapid7 InsightVM suffers from an information exposure issue whereby, when the user's session has ended due to inactivity, an attacker can use the Inspect Element browser feature to remove the login panel and view the details available in the last webpage visited by previous user


Published

2022-09-21T15:15:10.243

Last Modified

2024-11-21T04:45:17.407

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 3.3 (LOW)

Weaknesses
  • Type: Secondary
    CWE-200
  • Type: Primary
    CWE-613

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application rapid7 insightvm ≤ 6.6.160 Yes

References