Cross-site scripting vulnerability exists in the web management page of PLANEX COMMUNICATIONS network cameras. If a logged-in user accesses a specific file, an arbitrary script may be executed on the web browser of the user.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://jvn.jp/en/jp/JVN81966868/ |
History
Thu, 03 Oct 2024 01:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Planex
Planex cs-qr10 Planex cs-qr10 Firmware Planex cs-qr20 Planex cs-qr20 Firmware Planex cs-qr22 Planex cs-qr220 Planex cs-qr220 Firmware Planex cs-qr22 Firmware Planex cs-qr300 Planex cs-qr300 Firmware |
|
CPEs | cpe:2.3:h:planex:cs-qr10:-:*:*:*:*:*:*:* cpe:2.3:h:planex:cs-qr20:-:*:*:*:*:*:*:* cpe:2.3:h:planex:cs-qr220:-:*:*:*:*:*:*:* cpe:2.3:h:planex:cs-qr22:-:*:*:*:*:*:*:* cpe:2.3:h:planex:cs-qr300:-:*:*:*:*:*:*:* cpe:2.3:o:planex:cs-qr10_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:planex:cs-qr20_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:planex:cs-qr220_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:planex:cs-qr22_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:planex:cs-qr300_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Planex
Planex cs-qr10 Planex cs-qr10 Firmware Planex cs-qr20 Planex cs-qr20 Firmware Planex cs-qr22 Planex cs-qr220 Planex cs-qr220 Firmware Planex cs-qr22 Firmware Planex cs-qr300 Planex cs-qr300 Firmware |
|
Metrics |
cvssV3_1
|
Thu, 26 Sep 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 26 Sep 2024 04:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Cross-site scripting vulnerability exists in the web management page of PLANEX COMMUNICATIONS network cameras. If a logged-in user accesses a specific file, an arbitrary script may be executed on the web browser of the user. | |
Weaknesses | CWE-79 | |
References |
|
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2024-09-26T04:07:37.035Z
Updated: 2024-09-26T13:37:20.761Z
Reserved: 2024-09-10T06:57:27.511Z
Link: CVE-2024-45836
Vulnrichment
Updated: 2024-09-26T13:37:16.719Z
NVD
Status : Analyzed
Published: 2024-09-26T05:15:12.190
Modified: 2024-10-03T00:35:53.797
Link: CVE-2024-45836
Redhat
No data.