Unrated severityNVD Advisory· Published Jul 24, 2014· Updated May 6, 2026
CVE-2014-2968
CVE-2014-2968
Description
Cross-site scripting (XSS) vulnerability in the web interface on the Huawei E355 CH1E355SM modem with software 21.157.37.01.910 and Web UI 11.001.08.00.03 allows remote attackers to inject arbitrary web script or HTML via an SMS message.
Affected products
3- cpe:2.3:a:huawei:e355_web_ui:11.001.08.00.03:*:*:*:*:*:*:*
- cpe:2.3:o:huawei:e355_firmware:21.157.37.01.910:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.kb.cert.org/vuls/id/688812nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.