Cross-site scripting vulnerability in FURUNO SYSTEMS wireless LAN access point devices allows an authenticated user to inject an arbitrary script via a crafted configuration. Affected products and versions are as follows: ACERA 1210 firmware ver.02.36 and earlier, ACERA 1150i firmware ver.01.35 and earlier, ACERA 1150w firmware ver.01.35 and earlier, ACERA 1110 firmware ver.01.76 and earlier, ACERA 1020 firmware ver.01.86 and earlier, ACERA 1010 firmware ver.01.86 and earlier, ACERA 950 firmware ver.01.60 and earlier, ACERA 850F firmware ver.01.60 and earlier, ACERA 900 firmware ver.02.54 and earlier, ACERA 850M firmware ver.02.06 and earlier, ACERA 810 firmware ver.03.74 and earlier, and ACERA 800ST firmware ver.07.35 and earlier. They are affected when running in ST(Standalone) mode.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Furunosystems
Subscribe
|
Acera 1010
Subscribe
Acera 1010 Firmware
Subscribe
Acera 1020
Subscribe
Acera 1020 Firmware
Subscribe
Acera 1110
Subscribe
Acera 1110 Firmware
Subscribe
Acera 1150i
Subscribe
Acera 1150i Firmware
Subscribe
Acera 1150w
Subscribe
Acera 1150w Firmware
Subscribe
Acera 1210
Subscribe
Acera 1210 Firmware
Subscribe
Acera 800st
Subscribe
Acera 800st Firmware
Subscribe
Acera 810
Subscribe
Acera 810 Firmware
Subscribe
Acera 850f
Subscribe
Acera 850f Firmware
Subscribe
Acera 850m
Subscribe
Acera 850m Firmware
Subscribe
Acera 900
Subscribe
Acera 900 Firmware
Subscribe
Acera 950
Subscribe
Acera 950 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-43153 | Cross-site scripting vulnerability in FURUNO SYSTEMS wireless LAN access point devices allows an authenticated user to inject an arbitrary script via a crafted configuration. Affected products and versions are as follows: ACERA 1210 firmware ver.02.36 and earlier, ACERA 1150i firmware ver.01.35 and earlier, ACERA 1150w firmware ver.01.35 and earlier, ACERA 1110 firmware ver.01.76 and earlier, ACERA 1020 firmware ver.01.86 and earlier, ACERA 1010 firmware ver.01.86 and earlier, ACERA 950 firmware ver.01.60 and earlier, ACERA 850F firmware ver.01.60 and earlier, ACERA 900 firmware ver.02.54 and earlier, ACERA 850M firmware ver.02.06 and earlier, ACERA 810 firmware ver.03.74 and earlier, and ACERA 800ST firmware ver.07.35 and earlier. They are affected when running in ST(Standalone) mode. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 20 Sep 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-09-20T18:32:39.836Z
Reserved: 2023-09-22T04:36:32.490Z
Link: CVE-2023-39429
Updated: 2024-08-02T18:10:20.898Z
Status : Modified
Published: 2023-10-03T01:15:56.867
Modified: 2024-11-21T08:15:24.497
Link: CVE-2023-39429
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD