MEDIUM · 6.1

CVE-2016-5819

Moxa G3100V2 Series, editions prior to Version 2.8, and OnCell G3111/G3151/G3211/G3251 Series, editions prior to Version 1.7 allows a reflected cross-site scripting attack which may allow an attacker ...

Vulnerability Description

Moxa G3100V2 Series, editions prior to Version 2.8, and OnCell G3111/G3151/G3211/G3251 Series, editions prior to Version 1.7 allows a reflected cross-site scripting attack which may allow an attacker to execute arbitrary script code in the user’s browser within the trust relationship between their browser and the server.

CVSS Score

6.1

MEDIUM

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
CHANGED
Confidentiality
LOW
Integrity
LOW
Availability
NONE

Affected Products

VendorProductVersions
MoxaOncell G3100V2 Firmware< 2.8
MoxaOncell G3100V2-
MoxaOncell G3111 Firmware< 1.7
MoxaOncell G3111-
MoxaOncell G3151 Firmware< 1.7
MoxaOncell G3151-
MoxaOncell G3211 Firmware< 1.7
MoxaOncell G3211-
MoxaOncell G3251 Firmware< 1.7
MoxaOncell G3251-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2016-5819?

CVE-2016-5819 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Moxa G3100V2 Series, editions prior to Version 2.8, and OnCell G3111/G3151/G3211/G3251 Series, editions prior to Version 1.7 allows a reflected cross-site scripting attack which may allow an attacker ...

How severe is CVE-2016-5819?

CVE-2016-5819 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2016-5819?

Check the references section above for vendor advisories and patch information. Affected products include: Moxa Oncell G3100V2 Firmware, Moxa Oncell G3100V2, Moxa Oncell G3111 Firmware, Moxa Oncell G3111, Moxa Oncell G3151 Firmware.