vendor:
EPC3925
by:
Jeroen - IT Nerdbox
N/A
CVSS
N/A
Persistent Cross Site Scripting
Unknown
CWE
Product Name: EPC3925
Affected Version From: epc3925-E10-5-v302r125572-130520c
Affected Version To: epc3925-E10-5-v302r125572-130520c
Patch Exists: NO
Related CWE:
CPE: cpe:2.3:h:cisco:epc3925:epc3925-E10-5-v302r125572-130520c:*:*:*:*:*:*:*
Platforms Tested: Cisco EPC3925
2013
Cisco EPC3925 – Persistent Cross Site Scripting
The parameter DdnsHostName is vulnerable to Persistent Cross Site Scripting. However, there is client side input validation, which can easily be bypassed.
Mitigation:
Unknown