CVE-2019-3413

All versions up to V20.18.40.R7.B1of ZTE NetNumen DAP product have an XSS vulnerability. Due to the lack of correct validation of client data in WEB applications, which results in users being hijacked.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:zte:netnumen_dap_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:zte:netnumen_dap:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-06-11 20:29

Updated : 2023-12-10 12:59


NVD link : CVE-2019-3413

Mitre link : CVE-2019-3413

CVE.ORG link : CVE-2019-3413


JSON object : View

Products Affected

zte

  • netnumen_dap_firmware
  • netnumen_dap
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')