Cross-site scripting vulnerability exists in the web management page of PLANEX COMMUNICATIONS network cameras. If a logged-in user accesses a specific file, an arbitrary script may be executed on the web browser of the user.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://jvn.jp/en/jp/JVN81966868/ |
|
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Thu, 03 Oct 2024 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Planex
Planex cs-qr10 Planex cs-qr10 Firmware Planex cs-qr20 Planex cs-qr20 Firmware Planex cs-qr22 Planex cs-qr220 Planex cs-qr220 Firmware Planex cs-qr22 Firmware Planex cs-qr300 Planex cs-qr300 Firmware |
|
| CPEs | cpe:2.3:h:planex:cs-qr10:-:*:*:*:*:*:*:* cpe:2.3:h:planex:cs-qr20:-:*:*:*:*:*:*:* cpe:2.3:h:planex:cs-qr220:-:*:*:*:*:*:*:* cpe:2.3:h:planex:cs-qr22:-:*:*:*:*:*:*:* cpe:2.3:h:planex:cs-qr300:-:*:*:*:*:*:*:* cpe:2.3:o:planex:cs-qr10_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:planex:cs-qr20_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:planex:cs-qr220_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:planex:cs-qr22_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:planex:cs-qr300_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Planex
Planex cs-qr10 Planex cs-qr10 Firmware Planex cs-qr20 Planex cs-qr20 Firmware Planex cs-qr22 Planex cs-qr220 Planex cs-qr220 Firmware Planex cs-qr22 Firmware Planex cs-qr300 Planex cs-qr300 Firmware |
|
| Metrics |
cvssV3_1
|
Thu, 26 Sep 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 26 Sep 2024 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-site scripting vulnerability exists in the web management page of PLANEX COMMUNICATIONS network cameras. If a logged-in user accesses a specific file, an arbitrary script may be executed on the web browser of the user. | |
| Weaknesses | CWE-79 | |
| References |
|
Status: PUBLISHED
Assigner: jpcert
Published: 2024-09-26T04:07:37.035Z
Updated: 2025-03-25T16:28:16.689Z
Reserved: 2024-09-10T06:57:27.511Z
Link: CVE-2024-45836
Updated: 2024-09-26T13:37:16.719Z
Status : Modified
Published: 2024-09-26T05:15:12.190
Modified: 2025-03-25T17:16:09.980
Link: CVE-2024-45836
No data.