### [CVE-2019-18859](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-18859) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Digi AnywhereUSB 14 allows XSS via a link for the Digi Page. ### POC #### Reference - http://packetstormsecurity.com/files/155926/Digi-AnywhereUSB-14-Cross-Site-Scripting.html - https://gist.github.com/RNPG/e0d25ad51aa5c288b9005900f88a4f03 #### Github - https://github.com/ARPSyndicate/cvemon - https://github.com/RNPG/CVEs