Cross Site Scripting (XSS) Vulnerability in Firewall menu in Control Panel in KASDA KW5515 version 4.3.1.0, allows attackers to execute arbitrary code and steal cookies via a crafted script
History

Fri, 13 Sep 2024 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Kasdanet
Kasdanet kw5515
Kasdanet kw5515 Firmware
CPEs cpe:2.3:h:kasdanet:kw5515:-:*:*:*:*:*:*:*
cpe:2.3:o:kasdanet:kw5515_firmware:4.3.1.0:*:*:*:*:*:*:*
Vendors & Products Kasdanet
Kasdanet kw5515
Kasdanet kw5515 Firmware

Thu, 12 Sep 2024 18:30:00 +0000

Type Values Removed Values Added
First Time appeared Kasda
Kasda kw5515
Weaknesses CWE-79
CPEs cpe:2.3:a:kasda:kw5515:4.3.1.0:*:*:*:*:*:*:*
Vendors & Products Kasda
Kasda kw5515
Metrics cvssV3_1

{'score': 5.4, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 12 Sep 2024 17:30:00 +0000

Type Values Removed Values Added
Description Cross Site Scripting (XSS) Vulnerability in Firewall menu in Control Panel in KASDA KW5515 version 4.3.1.0, allows attackers to execute arbitrary code and steal cookies via a crafted script
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-09-12T00:00:00

Updated: 2024-09-12T17:39:02.171Z

Reserved: 2020-08-13T00:00:00

Link: CVE-2020-24061

cve-icon Vulnrichment

Updated: 2024-09-12T17:37:44.148Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-12T18:15:05.660

Modified: 2024-09-13T16:05:29.670

Link: CVE-2020-24061

cve-icon Redhat

No data.