Cross-site scripting (XSS) vulnerability in GE Multilink ML810/3000/3100 series switch 5.2.0 and earlier, and GE Multilink ML800/1200/1600/2400 4.2.1 and earlier.
References
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
Configuration 4 (hide)
| AND |
|
Configuration 5 (hide)
| AND |
|
Configuration 6 (hide)
| AND |
|
Configuration 7 (hide)
| AND |
|
History
05 Nov 2025, 00:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : 6.8
v3 : 5.4 |
| References |
|
Information
Published : 2017-08-28 15:29
Updated : 2025-11-05 00:15
NVD link : CVE-2015-3976
Mitre link : CVE-2015-3976
CVE.ORG link : CVE-2015-3976
JSON object : View
Products Affected
ge
- multilink_ml3000_firmware
- multilink_ml1600
- multilink_ml3100_firmware
- multilink_ml810_firmware
- multilink_ml3000
- multilink_ml3100
- multilink_ml810
- multilink_ml1200
- multilink_ml1600_firmware
- multilink_ml2400_firmware
- multilink_ml800
- multilink_ml1200_firmware
- multilink_ml2400
- multilink_ml800_firmware
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
