TOA N-C3100-3
- < 1.3.1
A cross-site scripting vulnerability has been identified in multiple models of the TOA Network Cameras TRIFORA 3 series. This issue allows an attacking administrator to execute arbitrary scripts in the web browser of a victim administrator who accesses the settings screen. The vulnerability arises when the affected product is configured with malicious input by the attacking administrator.
Exploitation of this vulnerability allows for the execution of arbitrary scripts in the web browser of an administrator accessing the settings screen.
TOA Corporation has released patched firmware for this vulnerability. Affected users should update to version 1.3.1 or later. Instructions for updating the firmware are available in the 'Operation and Settings Guide' on the TOA Products Download Site.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.