CVE-2018-19771: Infovista Vistaportal

Medium severity, CVSS 6.1. EPSS: 1.1% chance of exploitation in the next 30 days.

Cross Site Scripting exists in InfoVista VistaPortal SE Version 5.1 (build 51029). The page "EditCurrentPool.jsp" has reflected XSS via the PropName parameter.

Affected products

Published 2018-12-17. Last modified 2026-06-17.