CVE-2018-8831: XSS
Published Apr 18, 2018
·Updated
A Persistent XSS vulnerability exists in Kodi (formerly XBMC) through 17.6 that allows the execution of arbitrary HTML/script code in the context of the victim user's browser via a playlist.
Affected Software
1 affected component
Kodi Kodi<=17.6
Event History
Apr 18, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Data Sourced
via NVD·05:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-8831?
CVE-2018-8831 has a medium severity rating of 6.1 on the CVSS scale.
2
How can I fix CVE-2018-8831?
To mitigate CVE-2018-8831, it is recommended to update Kodi to the latest version where the vulnerability has been patched.
3
What type of vulnerability is CVE-2018-8831?
CVE-2018-8831 is a Persistent Cross-Site Scripting (XSS) vulnerability.
4
What are the potential impacts of CVE-2018-8831?
CVE-2018-8831 could allow an attacker to execute arbitrary HTML or script code in the context of the victim user's browser.
5
In which versions of Kodi does CVE-2018-8831 exist?
CVE-2018-8831 exists in Kodi versions up to and including 17.6.