Back to search
CVE-2019-3413
Published: Jun 11, 2019
Modified: Aug 4, 2024
PUBLISHED
CVSS v3.0
5.4
MEDIUM
Description
All versions up to V20.18.40.R7.B1of ZTE NetNumen DAP product have an XSS vulnerability. Due to the lack of correct validation of client data in WEB applications, which results in users being hijacked.
| Vendor | Product | Versions |
|---|---|---|
ZTE | NetNumen DAP | affected unspecified - <= All versions up to NetNumen DAP V20.18.40.R7.B1 |
CVSS v3.0 Details
CVSS v3.0 Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
Required
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
None
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now