CVE-2018-0679
Cross-site scripting vulnerability in multiple FXC Inc. network devices (Managed Ethernet switch FXC5210/5218/5224 firmware prior to version Ver1.00.22, Managed Ethernet switch FXC5426F firmware prior to version Ver1.00.06, Managed Ethernet switch FXC5428 firmware prior to version Ver1.00.07, Power over Ethernet (PoE) switch FXC5210PE/5218PE/5224PE firmware prior to version Ver1.00.14, and Wireless LAN router AE1021/AE1021PE firmware all versions) allows attacker with administrator rights to inject arbitrary web script or HTML via the administrative page.
Published:Nov 15, 2018
Last Modified:Nov 21, 2024
EPS:Nov 15, 2018
EPSS Score:0.00245
CVSS Score:4.8
Affected Products
Vendor
Product
Action
Vendor
Fxc
Product
Ae1021
Fxc
Ae1021
Vendor
Fxc
Product
Ae1021 Firmware
Fxc
Ae1021 Firmware
Vendor
Fxc
Product
Ae1021pe
Fxc
Ae1021pe
Vendor
Fxc
Product
Ae1021pe Firmware
Fxc
Ae1021pe Firmware
Vendor
Fxc
Product
Fxc5210
Fxc
Fxc5210
Vendor
Fxc
Product
Fxc5210 Firmware
Fxc
Fxc5210 Firmware
Vendor
Fxc
Product
Fxc5210pe
Fxc
Fxc5210pe
Vendor
Fxc
Product
Fxc5210pe Firmware
Fxc
Fxc5210pe Firmware
Vendor
Fxc
Product
Fxc5218
Fxc
Fxc5218
Vendor
Fxc
Product
Fxc5218 Firmware
Fxc
Fxc5218 Firmware
Vendor
Fxc
Product
Fxc5218pe
Fxc
Fxc5218pe
Vendor
Fxc
Product
Fxc5218pe Firmware
Fxc
Fxc5218pe Firmware
Vendor
Fxc
Product
Fxc5224
Fxc
Fxc5224
Vendor
Fxc
Product
Fxc5224 Firmware
Fxc
Fxc5224 Firmware
Vendor
Fxc
Product
Fxc5224pe
Fxc
Fxc5224pe
Vendor
Fxc
Product
Fxc5224pe Firmware
Fxc
Fxc5224pe Firmware
Vendor
Fxc
Product
Fxc5426f
Fxc
Fxc5426f
Vendor
Fxc
Product
Fxc5426f Firmware
Fxc
Fxc5426f Firmware
Vendor
Fxc
Product
Fxc5428
Fxc
Fxc5428
Vendor
Fxc
Product
Fxc5428 Firmware
Fxc
Fxc5428 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
