435
VMScore

CVE-2017-6443

Published: 15/03/2017 Updated: 16/03/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in EPSON TMNet WebConfig 1.00 allows remote malicious users to inject arbitrary web script or HTML via the W_AD1 parameter to Forms/oadmin_1.

Vulnerable Product Search on Vulmon Subscribe to Product

epson tmnet webconfig 1.00

Exploits

# Exploit Title: Persistent XSS in EPSON TMNet WebConfig Ver 100 # Google Dork: intitle:"EPSON TMNet WebConfig Ver100" # Date: 3/3/2017 # Exploit Author: Michael Benich # Vendor Homepage: wwwepson-bizcom/ # Software Link: c4bepson-bizcom/modules/community/indexphp?content_id=50 # Version: 100 # CVE: CVE-2017-6443 # Contact ...
EPSON TMNet WebConfig version 100 suffers from a persistent cross site scripting vulnerability ...