CVE-2020-21639: XSS
Published Nov 16, 2021
·Updated
Ruijie RG-UAC 6000-E50 commit 9071227 was discovered to contain a cross-site scripting (XSS) vulnerability via the rulename parameter. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
Affected Software
2 affected components
Ruijie Rg-uac 6000-e50 Firmware
Ruijie RG-UAC 6000-E50
Event History
Nov 16, 2021
CVE Published
via MITRE·06:06 PM
Data Sourced
via MITRE·06:06 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-21639?
CVE-2020-21639 has a medium severity rating due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2020-21639?
To fix CVE-2020-21639, update the Ruijie RG-UAC 6000-E50 firmware to the latest version that addresses this vulnerability.
3
What type of vulnerability is CVE-2020-21639?
CVE-2020-21639 is classified as a cross-site scripting (XSS) vulnerability.
4
Can CVE-2020-21639 be exploited remotely?
Yes, CVE-2020-21639 can be exploited remotely by attackers through injected scripts.
5
What systems are affected by CVE-2020-21639?
CVE-2020-21639 affects the Ruijie RG-UAC 6000-E50 running specific firmware versions.