Medium severity6.1NVD Advisory· Published Jan 19, 2020· Updated Jun 17, 2026
CVE-2020-7235
CVE-2020-7235
Description
UHP UHP-100 3.4.1.15, 3.4.2.4, and 3.4.3 devices allow XSS via cB3?ta= (profile title).
Affected products
5cpe:2.3:o:uhp:uhp-100_firmware:3.4.1.15:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:uhp:uhp-100_firmware:3.4.1.15:*:*:*:*:*:*:*
- cpe:2.3:o:uhp:uhp-100_firmware:3.4.2.4:*:*:*:*:*:*:*
- cpe:2.3:o:uhp:uhp-100_firmware:3.4.3:*:*:*:*:*:*:*
- UHP/UHP-100description
Patches
Vulnerability mechanics
References
1- sku11army.blogspot.com/2020/01/uhp-networks-multiple-reflected-xss-in.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.