CVE-2024-51187: XSS
Published Nov 11, 2024
·Updated
TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices contain a Store Cross-site scripting (XSS) vulnerability via the firewallRuleName1.1.1.0.0 parameter on the /firewallsetting.htm page.
Affected Software
9 affected components
Trendnet TEW-651BR
Trendnet TEW-652BRP
Trendnet TEW-652BRU
All of the following
Trendnet Tew-651br Firmware=2.04b1
Trendnet TEW-651BR
All of the following
Trendnet Tew-652brp Firmware=3.04b01
Trendnet TEW-652BRP
All of the following
Trendnet Tew-652bru Firmware=1.00b12
Trendnet TEW-652BRU
Event History
Nov 11, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-51187?
The severity of CVE-2024-51187 is categorized as high due to the potential for cross-site scripting attacks.
2
How do I fix CVE-2024-51187?
To fix CVE-2024-51187, update the firmware of TRENDnet TEW-651BR, TEW-652BRP, or TEW-652BRU devices to the latest version provided by TRENDnet.
3
What products are affected by CVE-2024-51187?
CVE-2024-51187 affects TRENDnet TEW-651BR, TEW-652BRP, and TEW-652BRU devices.
4
What type of vulnerability is CVE-2024-51187?
CVE-2024-51187 is a Store Cross-site scripting (XSS) vulnerability.
5
Where does CVE-2024-51187 occur in the device interface?
CVE-2024-51187 occurs via the firewallRule_Name_1.1.1.0.0 parameter on the /firewall_setting.htm page.