CVE-2024-33791: XSS
Published May 3, 2024
·Updated
A cross-site scripting (XSS) vulnerability in netis-systems MEX605 v2.00.06 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the getTimeZone function.
Affected Software
3 affected components
Netis Systems MEX605
All of the following
netis-systems Mex605 Firmware=2.00.06
netis-systems MEX605
Event History
May 3, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-33791?
CVE-2024-33791 is classified as a high severity vulnerability due to its potential for cross-site scripting exploits.
2
How do I fix CVE-2024-33791?
To fix CVE-2024-33791, update the Netis Systems MEX605 to the latest firmware version that addresses this vulnerability.
3
What type of vulnerability is CVE-2024-33791?
CVE-2024-33791 is a cross-site scripting (XSS) vulnerability.
4
What impact does CVE-2024-33791 have on affected systems?
CVE-2024-33791 allows attackers to execute arbitrary web scripts or HTML, potentially compromising user data.
5
Which software versions are affected by CVE-2024-33791?
CVE-2024-33791 affects the Netis Systems MEX605 running firmware version 2.00.06.