CVE-2019-25380: Smoothwall Express 3.1 'dhcp.cgi' Cross-Site Scripting
Smoothwall Express 3.1-SP4-polar-x8664-update9 contains multiple reflected cross-site scripting vulnerabilities in the dhcp.cgi script that allow attackers to inject malicious scripts through multiple parameters. Attackers can submit POST requests to dhcp.cgi with script payloads in parameters such as BOOTSERVER, BOOTFILE, BOOTROOT, STARTADDR, ENDADDR, DNS1, DNS2, NTP1, NTP2, WINS1, WINS2, DEFAULTLEASETIME, MAXLEASETIME, DOMAINNAME, NISDOMAIN, NIS1, NIS2, STATICHOST, STATICDESC, STATICMAC, and STATICIP to execute arbitrary JavaScript in user browsers.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-25380?
CVE-2019-25380 has a medium severity rating due to its ability to allow attackers to exploit cross-site scripting vulnerabilities.
How do I fix CVE-2019-25380?
To fix CVE-2019-25380, apply the latest updates or patches provided by Smoothwall for Smoothwall Express 3.1.
What are the implications of CVE-2019-25380?
The implications of CVE-2019-25380 include potential unauthorized access to sensitive information and execution of malicious scripts in user browsers.
Which versions of Smoothwall are affected by CVE-2019-25380?
CVE-2019-25380 affects Smoothwall Express 3.1 and its specific subversion 3.1-SP4-polar-x86_64-update9.
Can CVE-2019-25380 be exploited remotely?
Yes, CVE-2019-25380 can be exploited remotely by attackers through crafted POST requests that include malicious scripts.