CVE-2019-20526 | Ignite Realtime Openfire 4.4.1 setup-datasource-standard.jsp Password cross site scripting
A vulnerability was found in Ignite Realtime Openfire 4.4.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the file setup/setup-datasource-standard.jsp. The manipulation of the argument Password as part of Parameter leads to cross site scripting.
This vulnerability is handled as CVE-2019-20526. The attack may be launched remotely. There is no exploit available.