Cross-site scripting (XSS) vulnerability in the web-wizard setup page on Cisco Scientific Atlanta D20 and D30 cable modems allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Project Subscriptions

Vendors Products
Scientific Atlanta Dpc2420 Subscribe
Scientific Atlanta Dpc3000\/epc3000 Subscribe
Scientific Atlanta Dpc3008\/epc3008 Subscribe
Scientific Atlanta Dpc3825 Subscribe
Scientific Atlanta Dpc3925 Subscribe
Scientific Atlanta Dpc\/epc2100 Subscribe
Scientific Atlanta Dpc\/epc2202 Subscribe
Scientific Atlanta Dpc\/epc2203 Subscribe
Scientific Atlanta Dpc\/epc2325 Subscribe
Scientific Atlanta Dpc\/epc2425 Subscribe
Scientific Atlanta Dpc\/epc2434 Subscribe
Scientific Atlanta Dpc\/epc2505 Subscribe
Scientific Atlanta Dpc\/epc3010 Subscribe
Scientific Atlanta Dpc\/epc3212 Subscribe
Scientific Atlanta Dpc\/epc 3208 Subscribe
Scientific Atlanta Dpq2202 Subscribe
Scientific Atlanta Dpq2425 Subscribe
Scientific Atlanta Dpq3212 Subscribe
Scientific Atlanta Dpq3925 Subscribe
Scientific Atlanta Dpq\/epq2160 Subscribe
Scientific Atlanta Dpr362 Subscribe
Scientific Atlanta Dpw700 Subscribe
Scientific Atlanta Dpw730 Subscribe
Scientific Atlanta Dpw939 Subscribe
Scientific Atlanta Dpw941 Subscribe
Scientific Atlanta Dpx100\/120 Subscribe
Scientific Atlanta Dpx110 Subscribe
Scientific Atlanta Dpx130 Subscribe
Scientific Atlanta Dpx213 Subscribe
Scientific Atlanta Dpx2213 Subscribe
Scientific Atlanta Dpx\/epx2100 Subscribe
Scientific Atlanta Dpx\/epx2203 Subscribe
Scientific Atlanta Dpx\/epx2203c Subscribe
Scientific Atlanta Epc2420 Subscribe
Scientific Atlanta Epc3825 Subscribe
Scientific Atlanta Epc3925 Subscribe
Scientific Atlanta Wag310g Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2012-3025 Cross-site scripting (XSS) vulnerability in the web-wizard setup page on Cisco Scientific Atlanta D20 and D30 cable modems allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-08-06T19:50:05.394Z

Reserved: 2012-05-30T00:00:00.000Z

Link: CVE-2012-3047

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2013-12-10T19:55:03.967

Modified: 2025-04-11T00:51:21.963

Link: CVE-2012-3047

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses