CVE-2024-31971
24.07.2024, 15:15
Multiple stored cross-site scripting (XSS) vulnerabilities on AdTran NetVanta 3120 18.01.01.00.E devices allow remote attackers to inject arbitrary JavaScript, as demonstrated by /mainPassword.html, /processIdentity.html, /public.html, /dhcp.html, /private.html, /hostname.html, /connectivity.html, /NetworkMonitor.html, /trafficMonitoringConfig.html, and /wizardMain.html.
Vendor | Product | Version |
---|---|---|
adtran | netvanta_3120_firmware | 18.01.01.00.e:e |
𝑥
= Vulnerable software versions
References