First published: Thu Nov 15 2018(Updated: )
Cross-site scripting vulnerability in multiple FXC Inc. network devices (Managed Ethernet switch FXC5210/5218/5224 firmware prior to version Ver1.00.22, Managed Ethernet switch FXC5426F firmware prior to version Ver1.00.06, Managed Ethernet switch FXC5428 firmware prior to version Ver1.00.07, Power over Ethernet (PoE) switch FXC5210PE/5218PE/5224PE firmware prior to version Ver1.00.14, and Wireless LAN router AE1021/AE1021PE firmware all versions) allows attacker with administrator rights to inject arbitrary web script or HTML via the administrative page.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Fxc Fxc5210 Firmware | <1.00.22 | |
Fxc Fxc5210 | ||
Fxc Fxc5218 Firmware | <1.00.22 | |
Fxc Fxc5218 | ||
Fxc Fxc5224 Firmware | <1.00.22 | |
Fxc Fxc5224 | ||
Fxc Fxc5426f Firmware | <1.00.06 | |
Fxc Fxc5426f | ||
Fxc Fxc5428 Firmware | <1.00.07 | |
Fxc Fxc5428 | ||
Fxc Fxc5210pe Firmware | <1.00.14 | |
Fxc Fxc5210pe | ||
Fxc Fxc5218pe Firmware | <1.00.14 | |
Fxc Fxc5218pe | ||
Fxc Fxc5224pe Firmware | <1.00.14 | |
Fxc Fxc5224pe | ||
Fxc Ae1021 Firmware | ||
FXC AE1021 | ||
Fxc Ae1021pe Firmware | ||
Fxc Ae1021pe |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.