First published: Fri Jan 31 2020(Updated: )
Cross-site scripting (XSS) vulnerability in the management interface in Alcatel-Lucent 1830 Photonic Service Switch (PSS) 6.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the myurl parameter to menu/pop.html.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nokia 1830 Photonic Service Switch-4 Firmware | <=6.0 | |
Nokia 1830 Photonic Service Switch-4 | ||
Nokia 1830 Photonic Service Switch-16 Firmware | <=6.0 | |
Nokia 1830 Photonic Service Switch-16 | ||
Nokia 1830 Photonic Service Switch-32 Firmware | <=6.0 | |
Nokia 1830 Photonic Service Switch-32 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-3809 is a cross-site scripting (XSS) vulnerability in the management interface of Alcatel-Lucent 1830 Photonic Service Switch (PSS) 6.0 and earlier.
CVE-2014-3809 affects Alcatel-Lucent 1830 Photonic Service Switch (PSS) 6.0 and earlier versions.
CVE-2014-3809 has a severity rating of 6.1 (medium).
The CWE ID for CVE-2014-3809 is CWE-79.
To fix the CVE-2014-3809 vulnerability, update the Alcatel-Lucent 1830 Photonic Service Switch (PSS) to version 6.1 or later.