Vulnerabilities (CVE)

Filtered by vendor Mediakind Subscribe
Filtered by product Rx8200 Firmware
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-22158 1 Mediakind 2 Rx8200, Rx8200 Firmware 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
MediaKind (formerly Ericsson) RX8200 5.13.3 devices are vulnerable to multiple reflected and stored XSS. An attacker has to inject JavaScript code directly in the "path" or "Services+ID" parameters and send the URL to a user in order to exploit reflected XSS. In the case of stored XSS, an attacker must modify the "name" parameter with the malicious code.