RSS   Vulnerabilities for 'Otcp firmware'   RSS

2019-07-22
 
CVE-2019-3414

CWE-79
 

 
All versions up to V1.19.20.02 of ZTE OTCP product are impacted by XSS vulnerability. Due to XSS, when an attacker invokes the security management to obtain the resources of the specified operation code owned by a user, the malicious script code could be transmitted in the parameter. If the front end does not process the returned result from the interface properly, the malicious script may be executed and the user cookie or other important information may be stolen.

 

 >>> Vendor: ZTE 43 Products
Score m
Zxdsl
Zxv10 w300
F660
F460
Zxv10 w300 firmware
Zxhn h108l firmware
Zxdsl 831
Zxdsl 831cii
Zxhn h108n r1a firmware
Gan9.8t101a-b firmware
Zxhn h108n firmware
W300v1.0.0s zrd tr1 d68 firmware
Ox-330p firmware
Hg110 firmware
Mf28g firmware
Zxr10 1800-2s firmware
Nr8250 firmware
Nr8150 firmware
Nr8120 firmware
Nr8000tr firmware
Nr8120a firmware
Nr8950 firmware
Zxdt22 sf01 firmware
Zxdsl 831cii firmware
Mf65 firmware
Mf65m1 firmware
Zxhn f670 firmware
Zxr10 8905e firmware
Zxhn h168n firmware
Zxin10
Usmartview
Zxcloud irai
Netnumen dap firmware
Zxmw nr8000 firmware
Otcp firmware
Zxv10 b860a firmware
Zxcloud goldendata vap
OSCP
Zenic one r22b
Ztemarket apk
EVDC
Axon 30 pro message service


Copyright 2024, cxsecurity.com

 

Back to Top