CVE-2019-25384: Smoothwall Express 3.1 'portfw.cgi' Cross-Site Scripting
Smoothwall Express 3.1-SP4-polar-x8664-update9 contains multiple reflected cross-site scripting vulnerabilities in the portfw.cgi script that allow attackers to inject malicious scripts through unvalidated parameters. Attackers can submit POST requests with script payloads in the EXT, SRCPORTSEL, SRCPORT, DESTIP, DESTPORTSEL, or COMMENT parameters to execute arbitrary JavaScript in users' browsers.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-25384?
CVE-2019-25384 is classified as a moderate severity vulnerability due to its potential for reflected cross-site scripting attacks.
How do I fix CVE-2019-25384?
To fix CVE-2019-25384, ensure that Smoothwall Express is updated to the latest patch that addresses the cross-site scripting vulnerabilities.
What are the impacts of CVE-2019-25384?
The impacts of CVE-2019-25384 include the ability for attackers to inject malicious scripts into the web application, potentially compromising user data.
Which versions of Smoothwall Express are affected by CVE-2019-25384?
CVE-2019-25384 affects Smoothwall Express 3.1 and its SP4-polar-x86_64-update9 release.
Is user input validation affected by CVE-2019-25384?
Yes, CVE-2019-25384 is caused by unvalidated parameters in the portfw.cgi script, allowing for the injection of malicious scripts.