Vulnerability Description
Cross-site scripting (XSS) vulnerability in loginpages/error_user.shtml on the Micronet Network Access Controller SP1910 allows remote attackers to inject arbitrary web script or HTML via the msg parameter.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Micronet | Network Access Controller Sp1910 | All versions |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.org/0911-exploits/micronet-xss.txtExploit
- http://secunia.com/advisories/37514Vendor Advisory
- http://packetstormsecurity.org/0911-exploits/micronet-xss.txtExploit
- http://secunia.com/advisories/37514Vendor Advisory
FAQ
What is CVE-2009-4234?
CVE-2009-4234 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Cross-site scripting (XSS) vulnerability in loginpages/error_user.shtml on the Micronet Network Access Controller SP1910 allows remote attackers to inject arbitrary web script or HTML via the msg para...
How severe is CVE-2009-4234?
CVE-2009-4234 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2009-4234?
Check the references section above for vendor advisories and patch information. Affected products include: Micronet Network Access Controller Sp1910.