ZeroHour

CVE-2020-16242

CVSS 3.1
6.1 medium
EPSS
<1%p51
Published
()
Modified
Description

The affected Reason S20 Ethernet Switch is vulnerable to cross-site scripting (XSS), which may allow an attacker to trick application users into performing critical application actions that include, but are not limited to, adding and updating accounts.

Vendors
ge
Products
s2020 firmware, s2024 firmware
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.