First published: Thu Jan 25 2018(Updated: )
Netis WF2419 V2.2.36123 devices allow XSS via the Description parameter on the Bandwidth Control Rule Settings page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netis WF2419 Devices | =2.2.36123 | |
Netis-systems Wf2419 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-5967 is a vulnerability that allows XSS attacks on Netis WF2419 V2.2.36123 devices through the Description parameter on the Bandwidth Control Rule Settings page.
CVE-2018-5967 has a severity score of 5.4, which is considered medium.
To exploit CVE-2018-5967, an attacker can inject malicious code into the Description parameter on the Bandwidth Control Rule Settings page of a vulnerable Netis WF2419 V2.2.36123 device.
CVE-2018-5967 affects Netis WF2419 V2.2.36123 devices.
No, Netis-systems WF2419 devices are not vulnerable to CVE-2018-5967.