PT-2017-6716 · Ge · Ge Multilink Ml800/1200/1600/2400+1
Published
2017-08-28
·
Updated
2025-11-05
·
CVE-2015-3976
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:C/A:N |
Name of the Vulnerable Software and Affected Versions
GE Multilink ML810/3000/3100 series switch versions 5.2.0 and earlier
GE Multilink ML800/1200/1600/2400 versions 4.2.1 and earlier
Description
The issue is related to a cross-site scripting (XSS) vulnerability. Cross-site scripting is a type of security vulnerability that occurs when an attacker is able to inject malicious scripts into a website, allowing them to steal user data or take control of the user's session.
Recommendations
For GE Multilink ML810/3000/3100 series switch versions 5.2.0 and earlier, update to a version later than 5.2.0.
For GE Multilink ML800/1200/1600/2400 versions 4.2.1 and earlier, update to a version later than 4.2.1.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ge Multilink Ml800/1200/1600/2400
Ge Multilink Ml810/3000/3100 Series Switch