Back to Database
Status published
Medium
CVE-2007-3784
Cross-site scripting (XSS) vulnerability in the Belkin G Plus Router...
Vulnerability Description
Cross-site scripting (XSS) vulnerability in the Belkin G Plus Router F5D7231-4 with firmware 4.05.03 allows remote attackers to inject arbitrary web script or HTML via a hostname of a DHCP client.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2007-3784
Credits & Attribution
No credits recorded in the NVD database.
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35380
- http://secunia.com/advisories/26059
- http://osvdb.org/36361
- http://www.vupen.com/english/advisories/2007/2527
- http://archives.neohapsis.com/archives/fulldisclosure/2007-07/att-0179/Belkin_Router_fw_40503_xss_06_64.txt
- http://www.securityfocus.com/bid/24881
- http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0179.html
- http://www.portcullis-security.com/uplds/advisories/Belkin_Router_fw_40503_xss%2006_64.txt
More from belkin
View All →CVE-2022-30105
In Belkin N300 Firmware 1.00.08, the script located at /setting_hidden.asp,...
Critical
9.8
CVE-2021-25310
The administration web interface on Belkin Linksys WRT160NL 1.0.04.002_US_20130619 devices...
High
8.8
CVE-2020-26561
Belkin LINKSYS WRT160NL 1.0.04.002_US_20130619 devices have a stack-based buffer overflow...
High
8.8
CVE-2019-17532
An issue was discovered on Belkin Wemo Switch 28B WW_2.00.11057.PVT-OWRT-SNS...
High
7.5
CVE-2019-12780
The Belkin Wemo Enabled Crock-Pot allows command injection in the...
Critical
9.8
Affected Vendor
belkin
View all reports →Affected Software
f5d7231-4
Vulnerable Versions:
firmware_4.05.03
Timeline
Official Publish:
July 15th, 2007
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.