Cisco Catalyst 2940 Series Switches provided by Cisco Systems, Inc. contain a reflected cross-site scripting vulnerability regarding error page generation. An arbitrary script may be executed on the web browser of the user who is using the product. The affected firmware is prior to 12.2(50)SY released in 2011, and Cisco Catalyst 2940 Series Switches have been retired since January 2015
References
Link | Resource |
---|---|
https://jvn.jp/en/jp/JVN94363766/index.html | Third Party Advisory |
https://www.cisco.com/c/en/us/obsolete/switches/cisco-catalyst-2940-series-switches.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: jpcert
Published: 2022-06-20T09:50:09
Updated: 2022-06-20T09:50:09
Reserved: 2022-06-02T00:00:00
Link: CVE-2022-31734
JSON object: View
NVD Information
Status : Modified
Published: 2022-06-20T10:15:07.950
Modified: 2024-05-17T02:09:41.813
Link: CVE-2022-31734
JSON object: View
Redhat Information
No data.
CWE