Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-29054 | We have recently released new version of AirMax AirOS firmware v6.3.0 for TI, XW and XM boards that fixes vulnerabilities found on AirMax AirOS v6.2.0 and prior TI, XW and XM boards, according to the description below:Multiple end-points with parameters vulnerable to reflected cross site scripting (XSS), allowing attackers to abuse the user' session information and/or account takeover of the admin user.Mitigation:Update to the latest AirMax AirOS firmware version available at the AirMax download page. |
No history.
Subscriptions
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-04T09:56:27.421Z
Reserved: 2020-01-28T00:00:00.000Z
Link: CVE-2020-8170
No data.
Status : Modified
Published: 2020-05-26T16:15:12.773
Modified: 2026-06-17T03:25:59.053
Link: CVE-2020-8170
No data.
OpenCVE Enrichment
No data.
-
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
EUVD