CVE-2020-8839

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
12/02/2020
Last modified:
18/02/2020

Description

Stored XSS was discovered on CHIYU BF-430 232/485 TCP/IP Converter devices before 1.16.00, as demonstrated by the /if.cgi TF_submask field.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:chiyu-t:bf-430_firmware:*:*:*:*:*:*:*:* 1.16.00 (excluding)
cpe:2.3:h:chiyu-t:bf-430:-:*:*:*:*:*:*:*