Vulnerabilities > CVE-2013-2675 - Improper Restriction of Rendered UI Layers or Frames vulnerability in Brother Mfc-9970Cdw Firmware 1.10

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
brother
CWE-1021

Summary

Brother MFC-9970CDW 1.10 devices with Firmware L contain a Frameable response (Clickjacking) vulnerability which could allow remote attackers to obtain sensitive information.

Vulnerable Configurations

Part Description Count
OS
Brother
1
Hardware
Brother
1

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/121553/brothermfc9970cdw-xss.txt
idPACKETSTORM:121553
last seen2016-12-05
published2013-05-08
reportersqlhacker
sourcehttps://packetstormsecurity.com/files/121553/Brother-MFC-9970CDW-Firmware-0D-Cross-Site-Scripting.html
titleBrother MFC-9970CDW Firmware 0D Cross Site Scripting