Vulnerability Description
TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices contain a Store Cross-site scripting (XSS) vulnerability via the vsRule_VirtualServerName_1.1.10.0.0 parameter on the /virtual_server.htm page.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Trendnet | Tew-651Br Firmware | 2.04b1 |
| Trendnet | Tew-651Br | - |
| Trendnet | Tew-652Brp Firmware | 3.04b01 |
| Trendnet | Tew-652Brp | - |
| Trendnet | Tew-652Bru Firmware | 1.00b12 |
| Trendnet | Tew-652Bru | - |
Related Weaknesses (CWE)
References
- https://github.com/4hsien/CVE-vulns/blob/main/TRENDnet/TEW-652BRP/XSS_Virtual_SeExploitThird Party Advisory
- https://www.trendnet.com/products/product-detail?prod=235_TEW-651BRBroken LinkProduct
- https://www.trendnet.com/products/product-detail?prod=235_TEW-652BRPBroken LinkProduct
- https://www.trendnet.com/products/product-detail?prod=245_TEW-652BRUBroken LinkProduct
FAQ
What is CVE-2024-51188?
CVE-2024-51188 is a vulnerability with a CVSS score of 4.8 (MEDIUM). TRENDnet TEW-651BR 2.04B1, TEW-652BRP 3.04b01, and TEW-652BRU 1.00b12 devices contain a Store Cross-site scripting (XSS) vulnerability via the vsRule_VirtualServerName_1.1.10.0.0 parameter on the /vir...
How severe is CVE-2024-51188?
CVE-2024-51188 has been rated MEDIUM with a CVSS base score of 4.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-51188?
Check the references section above for vendor advisories and patch information. Affected products include: Trendnet Tew-651Br Firmware, Trendnet Tew-651Br, Trendnet Tew-652Brp Firmware, Trendnet Tew-652Brp, Trendnet Tew-652Bru Firmware.