Computer Security
[EN] securityvulns.ru
no-pyccku



Linksys Wireless ADSL Gateway crossite scripting
Published:21.11.2007
Source:BUGTRAQ
SecurityVulns ID:8369
Type:remote
Level:5/10
Description:Multiple crossite scripting vulnerabilities with /setup.cgi.
Affected:CISCO : Linksys WAG54GS
CVE:CVE-2007-3574 (Multiple cross-site scripting (XSS) vulnerabilities in setup.cgi on the Linksys WAG54GS Wireless-G ADSL Gateway with 1.00.06 firmware allow remote attackers to inject arbitrary web script or HTML via the c4_trap_ip_ parameter and other unspecified parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.)
Original documentdocumentpagvacito, Several persistent XSS and CSRF on Wireless-G ADSL Gateway with SpeedBooster (WAG54GS) (21.11.2007)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru