PT-2016-4643 · I O Data · Wn-G300R3+2

Satoshi Ogawa

+1

·

Publicado

2016-05-14

·

Atualizado

2016-05-17

·

CVE-2016-1207

CVSS v3.1

5.4

Média

VetorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions I-O DATA DEVICE WN-G300R versions 1.12 and earlier I-O DATA DEVICE WN-G300R2 versions 1.12 and earlier I-O DATA DEVICE WN-G300R3 versions 1.01 and earlier
Description The issue is related to a cross-site scripting (XSS) vulnerability. This vulnerability allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Recommendations For I-O DATA DEVICE WN-G300R versions 1.12 and earlier, update to a version later than 1.12. For I-O DATA DEVICE WN-G300R2 versions 1.12 and earlier, update to a version later than 1.12. For I-O DATA DEVICE WN-G300R3 versions 1.01 and earlier, update to a version later than 1.01.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-1207

Produtos afetados

Wn-G300R
Wn-G300R2
Wn-G300R3