CVE-2016-5819: XSS
Moxa G3100V2 Series, editions prior to Version 2.8, and OnCell G3111/G3151/G3211/G3251 Series, editions prior to Version 1.7 allows a reflected cross-site scripting attack which may allow an attacker to execute arbitrary script code in the user’s browser within the trust relationship between their browser and the server.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-5819?
CVE-2016-5819 has been classified as a medium severity vulnerability due to its potential impact on users' web browsers through reflected cross-site scripting.
How do I fix CVE-2016-5819?
To fix CVE-2016-5819, update your Moxa G3100V2 Series firmware to version 2.8 or higher, and for the OnCell G3111, G3151, G3211, and G3251 Series, upgrade to version 1.7 or above.
Who is affected by CVE-2016-5819?
CVE-2016-5819 affects users running Moxa G3100V2 Series firmware editions prior to version 2.8 and OnCell G3111, G3151, G3211, G3251 Series firmware editions prior to version 1.7.
What type of attack does CVE-2016-5819 allow?
CVE-2016-5819 allows a reflected cross-site scripting attack, which can enable attackers to execute arbitrary script code in the user's browser.
What are the potential impacts of CVE-2016-5819?
The potential impacts of CVE-2016-5819 include unauthorized actions being executed in the context of a user’s session, compromising the integrity and confidentiality of user sessions.