VYPR
Unrated severityNVD Advisory· Published Mar 9, 2014· Updated Jun 16, 2026

CVE-2013-2270

CVE-2013-2270

Description

Cross-site scripting (XSS) vulnerability in the administration page in Airvana HubBub C1-600-RT and Sprint AIRAVE 2.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected products

5
  • cpe:2.3:a:sprint:airave_software:2.5:*:*:*:*:*:*:*
  • cpe:2.3:h:airvana:hubbub_c1-600-rt:-:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:h:airvana:hubbub_c1-600-rt:-:*:*:*:*:*:*:*
    • (no CPE)
  • Sprint/Airave2 versions
    cpe:2.3:h:sprint:airave:-:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:h:sprint:airave:-:*:*:*:*:*:*:*
    • (no CPE)range: =2.5

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.