CVE-2019-17504: Kirona Dynamic Resource Scheduling
Medium severity, CVSS 6.1. EPSS: 2.8% chance of exploitation in the next 30 days.
An issue was discovered in Kirona Dynamic Resource Scheduling (DRS) 5.5.3.5. A reflected Cross-site scripting (XSS) vulnerability allows remote attackers to inject arbitrary web script via the /osm/report/ password parameter.
Affected products
- Kirona Dynamic Resource Scheduling: version 5.5.3.5 only
Published 2019-10-11. Last modified 2026-06-17.