CVE-2018-0614
26.07.2018, 17:29
Cross-site scripting vulnerability in NEC Platforms Calsos CSDX and CSDJ series products (CSDX 1.37210411 and earlier, CSDX(P) 4.37210411 and earlier, CSDX(D) 3.37210411 and earlier, CSDX(S) 2.37210411 and earlier, CSDJ-B 01.03.00 and earlier, CSDJ-H 01.03.00 and earlier, CSDJ-D 01.03.00 and earlier, CSDJ-A 03.00.00) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Vendor | Product | Version |
---|---|---|
necplatforms | calsos_csdx_firmware | 𝑥 ≤ 1.37210411 |
necplatforms | calsos_csdx\(p\)_firmware | 𝑥 ≤ 4.37210411 |
necplatforms | calsos_csdx\(s\)_firmware | 𝑥 ≤ 2.37210411 |
necplatforms | calsos_csdx\(d\)_firmware | 𝑥 ≤ 3.37210411 |
necplatforms | calsos_csdj-b_firmware | 𝑥 ≤ 01.03.00 |
necplatforms | calsos_csdj-d_firmware | 𝑥 ≤ 01.03.00 |
necplatforms | calsos_csdj-h_firmware | 𝑥 ≤ 01.03.00 |
necplatforms | calsos_csdj-a_firmware | 𝑥 ≤ 03.00.00 |
𝑥
= Vulnerable software versions