CVE-2019-16960: SolarWinds Web Help Desk
Medium severity, CVSS 5.4. EPSS: 1.3% chance of exploitation in the next 30 days.
SolarWinds Web Help Desk 12.7.0 allows XSS via a CSV template file with a crafted Location Name field.
Affected products
- SolarWinds Web Help Desk: version 12.7.0 only
Published 2021-01-04. Last modified 2026-06-17.