CVE Feed

    Dashboard / CVE / CVE-2017-14386

    CVE-2017-14386

    The web user interface of Dell 2335dn and 2355dn Multifunction Laser Printers, firmware versions prior to V2.70.06.26 A13 and V2.70.45.34 A10 respectively, are affected by a cross-site scripting vulnerability. Attackers could potentially exploit this vulnerability to execute arbitrary HTML or JavaScript code in the user's browser session in the context of the affected website.

    Published:Dec 7, 2017
    Last Modified:Apr 20, 2025
    EPS:Dec 7, 2017
    EPSS Score:0.00262
    CVSS Score:6.1

    Affected Products

    Vendor
    Dell
    Product
    2335dn
    Vendor
    Dell
    Product
    2335dn Firmware
    Vendor
    Dell
    Product
    2355dn
    Vendor
    Dell
    Product
    2355dn Firmware

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High