CVE-2018-6190: XSS
Published Jan 24, 2018
·Updated
Netis WF2419 V3.2.41381 devices allow XSS via the Description field on the MAC Filtering page.
Affected Software
4 affected components
netis-systems Wf2419 Firmware=3.2.41381
netis-systems Wf2419
All of the following
netis-systems Wf2419 Firmware=3.2.41381
netis-systems Wf2419
Event History
Jan 24, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Data Sourced
via NVD·09:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2018-6190?
CVE-2018-6190 is a vulnerability in Netis WF2419 V3.2.41381 devices that allows XSS attacks through the Description field on the MAC Filtering page.
2
What is the severity of CVE-2018-6190?
The severity of CVE-2018-6190 is medium, with a CVSS score of 5.4.
3
How does CVE-2018-6190 affect Netis WF2419 V3.2.41381 devices?
CVE-2018-6190 allows XSS attacks specifically through the Description field on the MAC Filtering page of Netis WF2419 V3.2.41381 devices.
4
Are Netis WF2419 V3.2.41381 devices the only affected software?
Yes, Netis WF2419 V3.2.41381 devices are the only affected software by CVE-2018-6190.
5
How can I mitigate the vulnerability in Netis WF2419 V3.2.41381 devices?
To mitigate the vulnerability, it is recommended to update the firmware of Netis WF2419 V3.2.41381 devices to a version that patches the XSS vulnerability.