2 results (0.005 seconds)

CVSS: 4.3EPSS: 0%CPEs: 1EXPL: 2

Cross-site scripting (XSS) vulnerability in the Proxim Wireless Tsunami MP.11 2411 with firmware 3.0.3 allows remote authenticated users to inject arbitrary web script or HTML via the system.sysName.0 SNMP OID. Vulnerablidad de secuencias de comandos en sitios cruzados (XSS) en el software empotrado (firmware) Proxim Wireless Tsunami MP.11 2411 v3.0.3 permite a usuarios remotos autenticados inyectar web script o HTML a través de system.sysName.0 SNMP OID. • https://www.exploit-db.com/exploits/32469 http://securityreason.com/securityalert/4884 http://www.procheckup.com/vulnerability_manager/vulnerabilities/pr08-24 http://www.securityfocus.com/archive/1/497182/100/0/threaded http://www.securityfocus.com/bid/31666 https://exchange.xforce.ibmcloud.com/vulnerabilities/45797 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

The Proxim Wireless Tsunami MP.11 2411 with firmware 3.0.3 has public as its default SNMP read/write community, which makes it easier for remote attackers to obtain sensitive information or modify SNMP variables. Proxim Wireless Tsunami MP.11 2411 con el software empotrado 3.0.3 tienen su comunidad de leer/escribir SNMP pública, lo que facilita a atacantes remotos la obtención de información sensible o la modificación de variables SNMP. • http://securityreason.com/securityalert/4884 http://www.procheckup.com/vulnerability_manager/vulnerabilities/pr08-24 http://www.securityfocus.com/archive/1/497182/100/0/threaded • CWE-94: Improper Control of Generation of Code ('Code Injection') •