CVE-2019-25428 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Comodo Dome Firewall 2.7.0 contains multiple reflected cross-site scripting vulnerabilities in the openvpn_users endpoint that allow attackers to inject malicio…
Medium CVSS: 5.1

CVE-2019-25428

Comodo Dome Firewall 2.7.0 contains multiple reflected cross-site scripting vulnerabilities in the openvpn_users endpoint that allow attackers to inject malicious scripts through POST parameters. Attackers can submit crafted POST requests with script payloads in the username, remotenets, explicitroutes, static_ip, custom_dns, or custom_domain parameters to execute arbitrary JavaScript in users' browsers.
Vendor
Comodo
Product
Dome Firewall
CWE
CWE-79
Yayın Tarihi
2026-02-19 13:16:17
Güncelleme
2026-02-20 17:13:23
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar