Cross-site scripting (XSS) vulnerability in the Diagnosis Ping feature in the administrative web interface on Moxa EDS-405A and EDS-408A switches with firmware prior to 3.6 allows remote malicious users to inject arbitrary web script or HTML via an unspecified field.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
moxa eds-408a_firmware |
||
moxa eds-405a_firmware |