CVE-2020-8170 - CVE House
Back to Database
Status published Medium CVE-2020-8170

We have recently released new version of AirMax AirOS firmware...

Vulnerability Description

We have recently released new version of AirMax AirOS firmware v6.3.0 for TI, XW and XM boards that fixes vulnerabilities found on AirMax AirOS v6.2.0 and prior TI, XW and XM boards, according to the description below:Multiple end-points with parameters vulnerable to reflected cross site scripting (XSS), allowing attackers to abuse the user' session information and/or account takeover of the admin user.Mitigation:Update to the latest AirMax AirOS firmware version available at the AirMax download page.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-8170

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

AirMax AirOS for TI, XW and XM boards
Vulnerable Versions:
Affected firmware versions are v6.2.0 and prior, Fixed firmware version is v6.3.0

Timeline

Official Publish: May 26th, 2020
Last Modified: August 4th, 2024
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Weaknesses (CWE)