Cross-site scripting (XSS) vulnerability in the Diagnosis Ping feature in the administrative web interface on Moxa EDS-405A and EDS-408A switches with firmware before 3.6 allows remote attackers to inject arbitrary web script or HTML via an unspecified field.
Advisories
Source ID Title
EUVD EUVD EUVD-2015-6407 Cross-site scripting (XSS) vulnerability in the Diagnosis Ping feature in the administrative web interface on Moxa EDS-405A and EDS-408A switches with firmware before 3.6 allows remote attackers to inject arbitrary web script or HTML via an unspecified field.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-06T07:22:21.695Z

Reserved: 2015-08-17T00:00:00

Link: CVE-2015-6466

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2015-09-11T16:59:10.423

Modified: 2025-04-12T10:46:40.837

Link: CVE-2015-6466

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.