ZeroHour

CVE-2019-18233

CVSS 3.1
6.1 medium
EPSS
<1%p52
Published
()
Modified
Description

In Advantech Spectre RT Industrial Routers ERT351 5.1.3 and prior, the affected product does not neutralize special characters in the error response, allowing attackers to use a reflected XSS attack.

Vendors
advantech
Products
spectre rt ert351 firmware
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.