CVE-2021-20710: XSS
Published Apr 26, 2021
·Updated
Cross-site scripting vulnerability in Aterm WG2600HS firmware Ver1.5.1 and earlier allows remote attackers to inject an arbitrary script via unspecified vectors.
Affected Software
2 affected components
Aterm WG2600HS firmware<=1.5.1
Aterm WG2600HS
Event History
Apr 26, 2021
CVE Published
via MITRE·12:20 AM
Data Sourced
via MITRE·12:20 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-20710?
CVE-2021-20710 is classified as a medium severity cross-site scripting vulnerability.
2
How do I fix CVE-2021-20710?
To fix CVE-2021-20710, update the Aterm WG2600HS firmware to version 1.5.2 or later.
3
What software is affected by CVE-2021-20710?
CVE-2021-20710 affects Aterm WG2600HS firmware version 1.5.1 and earlier.
4
Can CVE-2021-20710 be exploited remotely?
Yes, CVE-2021-20710 can be exploited remotely by injecting arbitrary scripts through unspecified vectors.
5
What is the nature of the vulnerability in CVE-2021-20710?
CVE-2021-20710 is a cross-site scripting vulnerability that allows attackers to execute scripts in the context of the user's browser.