4.3
CVSSv2

CVE-2015-6466

Published: 11/09/2015 Updated: 14/09/2015
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the Diagnosis Ping feature in the administrative web interface on Moxa EDS-405A and EDS-408A switches with firmware prior to 3.6 allows remote malicious users to inject arbitrary web script or HTML via an unspecified field.

Vulnerable Product Search on Vulmon Subscribe to Product

moxa eds-408a_firmware

moxa eds-405a_firmware