Vulnerability Details CVE-2021-31250
Multiple storage XSS vulnerabilities were discovered on BF-430, BF-431 and BF-450M TCP/IP Converter devices from CHIYU Technology Inc due to a lack of sanitization of the input on the components man.cgi, if.cgi, dhcpc.cgi, ppp.cgi.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.894
EPSS Ranking 99.5%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2021-31250
-
cpe:2.3:h:chiyu-tech:bf-430:-
-
cpe:2.3:h:chiyu-tech:bf-431:-
-
cpe:2.3:h:chiyu-tech:bf-450m:-
-
cpe:2.3:o:chiyu-tech:bf-430_firmware:-
-
cpe:2.3:o:chiyu-tech:bf-431_firmware:-
-
cpe:2.3:o:chiyu-tech:bf-450m_firmware:-