CVE-2014-5438: XSS
Cross-site scripting (XSS) vulnerability in ARRIS Touchstone TG862G/CT Telephony Gateway with firmware 7.6.59S.CT and earlier allows remote authenticated users to inject arbitrary web script or HTML via the computername parameter to connecteddevicescomputersedit.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-5438?
CVE-2014-5438 is classified as a medium severity cross-site scripting (XSS) vulnerability.
How do I fix CVE-2014-5438?
To fix CVE-2014-5438, update the ARRIS Touchstone TG862G/CT firmware to a version later than 7.6.59S.CT.
Who is affected by CVE-2014-5438?
Users of the ARRIS Touchstone TG862G/CT Telephony Gateway with firmware version 7.6.59S.CT and earlier are affected by CVE-2014-5438.
What type of vulnerability is CVE-2014-5438?
CVE-2014-5438 is a cross-site scripting (XSS) vulnerability that allows remote authenticated users to inject arbitrary web scripts or HTML.
What are the implications of CVE-2014-5438?
The implications of CVE-2014-5438 include potential unauthorized access to sensitive information and manipulation of user sessions.