Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-49352 | A vulnerability, which was classified as problematic, has been found in Kaon CG3000 1.01.43. Affected by this issue is some unknown functionality of the component dhcpcd Command Handler. The manipulation of the argument -h with the input <script>alert('XSS')</script> leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 11 Sep 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kaonmedia
Kaonmedia cg3000 Firmware |
|
| CPEs | cpe:2.3:o:kaonmedia:cg3000_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Kaonmedia
Kaonmedia cg3000 Firmware |
|
| Metrics |
ssvc
|
Wed, 11 Sep 2024 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability, which was classified as problematic, has been found in Kaon CG3000 1.01.43. Affected by this issue is some unknown functionality of the component dhcpcd Command Handler. The manipulation of the argument -h with the input <script>alert('XSS')</script> leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Kaon CG3000 dhcpcd Command cross site scripting | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-09-11T20:01:31.141Z
Reserved: 2024-09-11T11:36:20.597Z
Link: CVE-2024-8693
Updated: 2024-09-11T20:00:05.698Z
Status : Awaiting Analysis
Published: 2024-09-11T20:15:03.503
Modified: 2024-09-12T12:35:54.013
Link: CVE-2024-8693
No data.
OpenCVE Enrichment
No data.
EUVD