Security Advisory
CVE-2018-19386
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
SolarWinds Database Performance Analyzer 11.1.457 contains an instance of Reflected XSS in its idcStateError component, where the page parameter is reflected into the HREF of the Try Again Button on the page, aka a /iwc/idcStateError.iwc?page= URI.