RSS   Vulnerabilities for 'Active library explorer'   RSS

2019-03-21
 
CVE-2019-7417

CWE-79
 

 
XSS exists in Ericsson Active Library Explorer (ALEX) 14.3 in multiple parameters in the "/cgi-bin/alexserv" servlet, as demonstrated by the DB, FN, fn, or id parameter.

 

 >>> Vendor: Ericsson 4 Products
Axc tigris multiservice access platform
Hm220dp adsl modem
Drutt mobile service delivery platform
Active library explorer


Copyright 2019, cxsecurity.com

 

Back to Top