CVE-2020-5533: XSS
Published Feb 21, 2020
·Updated
Cross-site scripting vulnerability in Aterm WG2600HS firmware Ver1.3.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
4 affected components
NEC Aterm WG2600HS firmware<=1.3.2
NEC Aterm WG2600HS
All of the following
NEC Aterm WG2600HS firmware<=1.3.2
NEC Aterm WG2600HS
Event History
Feb 21, 2020
CVE Published
via MITRE·09:15 AM
Data Sourced
via MITRE·09:15 AM
DescriptionWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2020-5533?
CVE-2020-5533 is a cross-site scripting vulnerability in Aterm WG2600HS firmware Ver1.3.2 and earlier that allows remote attackers to inject arbitrary web script or HTML.
2
What is the severity of CVE-2020-5533?
The severity of CVE-2020-5533 is medium with a CVSS score of 6.1.
3
What software versions are affected by CVE-2020-5533?
Aterm WG2600HS firmware versions up to and including Ver1.3.2 are affected by CVE-2020-5533.
4
How can remote attackers exploit CVE-2020-5533?
Remote attackers can exploit CVE-2020-5533 by injecting arbitrary web script or HTML via unspecified vectors.
5
Are all NEC Aterm WG2600HS devices vulnerable to CVE-2020-5533?
No, only NEC Aterm WG2600HS devices running the specified firmware versions are vulnerable to CVE-2020-5533.