← Back

CVE-2018-0679

nvd nist
Published: Nov 15, 2018Modified: Nov 21, 2024

JSON object

Loading...
4.8
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Exploitability: 1.7 / Impact: 2.7
Source: NVD

Description

Cross-site scripting vulnerability in multiple FXC Inc. network devices (Managed Ethernet switch FXC5210/5218/5224 firmware prior to version Ver1.00.22, Managed Ethernet switch FXC5426F firmware prior to version Ver1.00.06, Managed Ethernet switch FXC5428 firmware prior to version Ver1.00.07, Power over Ethernet (PoE) switch FXC5210PE/5218PE/5224PE firmware prior to version Ver1.00.14, and Wireless LAN router AE1021/AE1021PE firmware all versions) allows attacker with administrator rights to inject arbitrary web script or HTML via the administrative page.

Affected (10)

10 products
Fxc5210 Firmware
Fxc5218 Firmware
Fxc5224 Firmware
Fxc5426f Firmware
Fxc5428 Firmware
Fxc5210pe Firmware
Fxc5218pe Firmware
Fxc5224pe Firmware
Ae1021 Firmware
Ae1021pe Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.00.22
Running on/withPlatform Versions
Fxc
Fxc5210
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.00.22
Running on/withPlatform Versions
Fxc
Fxc5218
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.00.22
Running on/withPlatform Versions
Fxc
Fxc5224
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.00.06
Running on/withPlatform Versions
Fxc
Fxc5426f
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.00.07
Running on/withPlatform Versions
Fxc
Fxc5428
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.00.14
Running on/withPlatform Versions
Fxc
Fxc5210pe
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.00.14
Running on/withPlatform Versions
Fxc
Fxc5218pe
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.00.14
Running on/withPlatform Versions
Fxc
Fxc5224pe
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Fxc
Ae1021
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Fxc
Ae1021pe
All versions

References (4)

Source: vultures@jpcert.or.jp
Third Party Advisory
Source: vultures@jpcert.or.jp
MitigationVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationVendor Advisory

Timeline

No history available yet.