4.3
CVSSv2

CVE-2014-9142

Published: 05/12/2014 Updated: 09/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Technicolor Router TD5130 with firmware 2.05.C29GV allows remote malicious users to inject arbitrary web script or HTML via the failrefer parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

technicolor td5130 router firmware 2.05.c29gv

Exploits

Product: Wireless N ADSL 2/2+ Modem Router Firmware Version : V205C29GV Modem Type : ADSL2+ Router Modem Vendor : Technicolor Model: DT5130 Bugs: 1- Unauth Xss - CVE-2014-9142 user=teste&password=teste& userlevel=15&refer=%2Fniggahtml&failrefer=/basicauthcgi?indexhtml?failrefer=<script></script><script>alert( ...
ADSL2+ version 205C29GV suffers from cross site scripting, open redirect, and command injection vulnerabilities ...