First published: Thu Dec 30 2021(Updated: )
Quectel UC20 UMTS/HSPA+ UC20 6.3.14 is affected by a Cross Site Scripting (XSS) vulnerability.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Quectel UC20 Firmware | =6.3.14 | |
Quectel UC20 Firmware | ||
Quectel UC20 Firmware | =6.3.14 | |
Quectel UC20 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-45815 is classified as a Cross Site Scripting (XSS) vulnerability, which can allow attackers to execute arbitrary scripts in the context of the user’s session.
To mitigate CVE-2021-45815, you should upgrade the Quectel UC20 firmware to a version that patches the XSS vulnerability.
CVE-2021-45815 affects Quectel UC20 firmware version 6.3.14, specifically designed for the Quectel UC20 hardware.
If exploited, CVE-2021-45815 may allow attackers to steal sensitive information or perform actions on behalf of the user.
As of now, there is no public information indicating a widespread exploit for CVE-2021-45815, but the vulnerability still presents a security risk.