Comtech H8 Heights Remote Gateway 2.5.1 devices allow XSS and HTML injection via the Site Name (aka SiteName) field.
References
Link | Resource |
---|---|
https://misteralfa-hack.blogspot.com/2019/10/comtech-stored-xss-heights-remote.html | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2019-10-17T10:49:52
Updated: 2019-10-17T10:49:52
Reserved: 2019-10-17T00:00:00
Link: CVE-2019-17667
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-10-17T11:15:11.053
Modified: 2020-01-10T16:42:15.163
Link: CVE-2019-17667
JSON object: View
Redhat Information
No data.
CWE