Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-25205

Опубликовано: 20 июл. 2021
Источник: nvd
CVSS3: 6.1
CVSS2: 4.3
EPSS Низкий

Описание

The web console for Mimosa B5, B5c, and C5x firmware through 2.8.0.2 is vulnerable to stored XSS in the set_banner() function of /var/www/core/controller/index.php. An unauthenticated attacker may set the contents of the /mnt/jffs2/banner.txt file, stored on the device's filesystem, to contain arbitrary JavaScript. The file contents are then used as part of a welcome/banner message presented to unauthenticated users who visit the login page for the web console. This vulnerability does not occur in the older 1.5.x firmware versions.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:mimosa:b5_firmware:*:*:*:*:*:*:*:*
Версия до 2.8.0.3 (включая)
cpe:2.3:h:mimosa:b5:-:*:*:*:*:*:*:*
Конфигурация 2

Одновременно

cpe:2.3:o:mimosa:b5c_firmware:*:*:*:*:*:*:*:*
Версия до 2.8.0.3 (включая)
cpe:2.3:h:mimosa:b5c:-:*:*:*:*:*:*:*
Конфигурация 3

Одновременно

cpe:2.3:o:mimosa:c5c_firmware:*:*:*:*:*:*:*:*
Версия до 2.8.0.3 (включая)
cpe:2.3:h:mimosa:c5c:-:*:*:*:*:*:*:*

EPSS

Процентиль: 77%
0.01028
Низкий

6.1 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

github
больше 3 лет назад

The web console for Mimosa B5, B5c, and C5x firmware through 2.8.0.2 is vulnerable to stored XSS in the set_banner() function of /var/www/core/controller/index.php. An unauthenticated attacker may set the contents of the /mnt/jffs2/banner.txt file, stored on the device's filesystem, to contain arbitrary JavaScript. The file contents are then used as part of a welcome/banner message presented to unauthenticated users who visit the login page for the web console. This vulnerability does not occur in the older 1.5.x firmware versions.

EPSS

Процентиль: 77%
0.01028
Низкий

6.1 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-79