CVE-2021-38701
4.8
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Exploitability: 1.7 / Impact: 2.7
Source: NVD
Description
Certain Motorola Solutions Avigilon devices allow XSS in the administrative UI. This affects T200/201 before 4.10.0.68; T290 before 4.4.0.80; T008 before 2.2.0.86; T205 before 4.12.0.62; T204 before 3.28.0.166; and T100, T101, T102, and T103 before 2.6.0.180.
Affected (10)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.2.0.86 |
| Running on/with | Platform Versions |
|---|---|
Motorola T008 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.6.0.180 |
| Running on/with | Platform Versions |
|---|---|
Motorola T100 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.6.0.180 |
| Running on/with | Platform Versions |
|---|---|
Motorola T101 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.6.0.180 |
| Running on/with | Platform Versions |
|---|---|
Motorola T102 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.6.0.180 |
| Running on/with | Platform Versions |
|---|---|
Motorola T103 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.10.0.68 |
| Running on/with | Platform Versions |
|---|---|
Motorola T200 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.10.0.68 |
| Running on/with | Platform Versions |
|---|---|
Motorola T201 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.28.0.166 |
| Running on/with | Platform Versions |
|---|---|
Motorola T204 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.12.0.62 |
| Running on/with | Platform Versions |
|---|---|
Motorola T205 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.4.0.80 |
| Running on/with | Platform Versions |
|---|---|
Motorola T290 | All versions |
References (4)
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.