CVE-2019-3413
5.4
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD
Description
All versions up to V20.18.40.R7.B1of ZTE NetNumen DAP product have an XSS vulnerability. Due to the lack of correct validation of client data in WEB applications, which results in users being hijacked.
Affected (1)
Products: Zte: Netnumen Dap Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 20.18.40.r7.b1 |
| Running on/with | Platform Versions |
|---|---|
Zte Netnumen Dap | All versions |
References (2)
Source: psirt@zte.com.cn
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.