Vulnerability Details CVE-2018-16193
Cross-site scripting vulnerability in Aterm WF1200CR and Aterm WG1200CR (Aterm WF1200CR firmware Ver1.1.1 and earlier, Aterm WG1200CR firmware Ver1.0.1 and earlier) allows authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 51.8%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2018-16193
-
cpe:2.3:h:nec:aterm_wf1200cr:-
-
cpe:2.3:h:nec:aterm_wg1200cr:-
-
cpe:2.3:o:nec:aterm_wf1200cr_firmware:-
-
cpe:2.3:o:nec:aterm_wf1200cr_firmware:1.0.0
-
cpe:2.3:o:nec:aterm_wf1200cr_firmware:1.1.1
-
cpe:2.3:o:nec:aterm_wg1200cr_firmware:-
-
cpe:2.3:o:nec:aterm_wg1200cr_firmware:1.0.0
-
cpe:2.3:o:nec:aterm_wg1200cr_firmware:1.0.1