CVE-2019-7255: XSS
Published Jul 2, 2019
·Updated
Linear eMerge E3-Series devices allow XSS.
Affected Software
4 affected components
Nortekcontrol Linear Emerge Essential Firmware<=1.00-06
Nortekcontrol Linear Emerge Essential
Nortekcontrol Linear Emerge Elite Firmware<=1.00-06
Nortekcontrol Linear Emerge Elite
Event History
Jul 2, 2019
CVE Published
via MITRE·06:44 PM
Data Sourced
via MITRE·06:44 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-7255?
CVE-2019-7255 has been assigned a moderate severity due to the potential for cross-site scripting attacks.
2
How do I fix CVE-2019-7255?
To fix CVE-2019-7255, it is recommended to update the Linear eMerge E3-Series devices to the latest firmware version beyond 1.00-06.
3
What type of vulnerability is CVE-2019-7255?
CVE-2019-7255 is classified as a cross-site scripting (XSS) vulnerability.
4
Which devices are affected by CVE-2019-7255?
CVE-2019-7255 affects Linear eMerge Essential and Elite firmware versions up to 1.00-06.
5
Can CVE-2019-7255 be exploited remotely?
Yes, CVE-2019-7255 can be exploited remotely, allowing attackers to execute malicious scripts in the context of the user's session.