← Back

CVE-2018-5280

nvd nist
Published: Jan 8, 2018Modified: Nov 21, 2024

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

SonicWall SonicOS on Network Security Appliance (NSA) 2016 Q4 devices has XSS via the Configure SSO screens.

Affected (5)

Products: Sonicwall: Sonicos
1 product
Sonicos
Configuration A
5 vulnerable · 7 platform
Vulnerable SoftwareAffected Versions
Sonicwall
Version 6.2.7.0
Version 6.2.9.0
Version 6.5.0.0
Version 6.5.1.0
Version 6.5.2.0
Running on/withPlatform Versions
Sonicwall
Nsa 250m
All versions
Sonicwall
Nsa 2600
All versions
Sonicwall
Nsa 2650
All versions
Sonicwall
Nsa 3600
All versions
Sonicwall
Nsa 4600
All versions
Sonicwall
Nsa 5600
All versions
Sonicwall
Nsa 6600
All versions

References (6)

Source: cve@mitre.org
Third Party AdvisoryVDB Entry
Source: cve@mitre.org
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory

Timeline

No history available yet.