CVE-2008-4931
CVSS 4.3 - MEDIUM
Description
Cross-site scripting (XSS) vulnerability in the account module in firmCHANNEL Digital Signage 3.24, and possibly earlier versions, allows remote attackers to inject arbitrary web script or HTML via the action parameter to index.php.
Affected Products
1| Vendor | Product | Version |
|---|---|---|
| firmchannel | digital_signage |
3.24
|
References
Weakness Types
CWE-79
CVE Information
- CVE ID:
CVE-2008-4931- Published:
- 2008-11-05
- Modified:
- 2026-04-23
- CVSS Score:
- 4.3
- Severity:
- MEDIUM
- Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N
Affected Vendors
firmchannel
Quick Actions
CVSS Severity Scale
0.0 - 3.9
LOW
4.0 - 6.9
MEDIUM
7.0 - 8.9
HIGH
9.0 - 10.0
CRITICAL