RSS   Vulnerabilities for 'Active library explorer'   RSS

2019-03-21
 
CVE-2019-7417

CWE-79
 

 
XSS exists in Ericsson Active Library Explorer (ALEX) 14.3 in multiple parameters in the "/cgi-bin/alexserv" servlet, as demonstrated by the DB, FN, fn, or id parameter.

 

 >>> Vendor: Ericsson 9 Products
Axc tigris multiservice access platform
Hm220dp adsl modem
Drutt mobile service delivery platform
Network manager
Active library explorer
Bscs ix r18 billing \& rating admx
Bscs ix r18 billing \& rating mx
Network location mps gmpc21
Codechecker


Copyright 2024, cxsecurity.com

 

Back to Top