The affected Reason S20 Ethernet Switch is vulnerable to cross-site scripting (XSS), which may allow attackers to trick users into following a link or navigating to a page that posts a malicious JavaScript statement to the vulnerable site, causing the malicious JavaScript to be rendered by the site and executed by the victim client.
2020-10-20T15:15:12.887
2024-11-21T05:07:01.097
Modified
CVSSv3.1: 6.1 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | ge | s2020_firmware | < 07a06 | Yes |
Hardware | ge | s2020 | - | No |
Operating System | ge | s2024_firmware | < 07a06 | Yes |
Hardware | ge | s2024 | - | No |