First published: Tue Feb 18 2020(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Linksys E4200 router with firmware 1.0.05 build 7 allow remote attackers to inject arbitrary web script or HTML via the (1) log_type, (2) ping_ip, (3) ping_size, (4) submit_type, or (5) traceroute_ip parameter to apply.cgi or (6) new_workgroup or (7) submit_button parameter to storage/apply.cgi.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Belkin Linksys E4200 Firmware | =1.0.05-build7 | |
Belkin Linksys E4200 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-2679 is a vulnerability that allows remote attackers to inject arbitrary web script or HTML into Cisco Linksys E4200 router with firmware 1.0.05 build 7.
CVE-2013-2679 has a severity of medium with a score of 6.1.
Cisco Linksys E4200 router with firmware version 1.0.05 build 7 is affected by CVE-2013-2679.
Remote attackers can exploit CVE-2013-2679 by injecting arbitrary web script or HTML via specific parameters in apply.cgi.
No, only Cisco Linksys E4200 router with firmware version 1.0.05 build 7 is vulnerable to CVE-2013-2679.