Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-8062

A cross-site scripting (XSS) vulnerability on Comtrend AR-5387un devices with A731-410JAZ-C04_R02.A2pD035g.d23i firmware allows remote attackers to inject arbitrary web script or HTML via the Service Description parameter while creating a WAN service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 40.6%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2018-8062
  • Comtrend » Ar-5387un » Version: N/A
    cpe:2.3:h:comtrend:ar-5387un:-
  • Comtrend » Ar-5387un Firmware » Version: a731-410jaz-c04_r02.a2pd035g.d23i
    cpe:2.3:o:comtrend:ar-5387un_firmware:a731-410jaz-c04_r02.a2pd035g.d23i


Contact Us

Shodan ® - All rights reserved