Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting crafted input to the snat endpoint. Attackers can send POST requests with JavaScript payloads in the port or snat_to_ip parameters to execute arbitrary scripts in users' browsers.
Metrics
Affected Vendors & Products
References
History
Thu, 19 Feb 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Comodo Dome Firewall 2.7.0 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by submitting crafted input to the snat endpoint. Attackers can send POST requests with JavaScript payloads in the port or snat_to_ip parameters to execute arbitrary scripts in users' browsers. | |
| Title | Comodo Dome Firewall 2.7.0 Reflected Cross-Site Scripting via snat | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-02-19T12:02:36.092Z
Reserved: 2026-02-18T22:39:48.017Z
Link: CVE-2019-25420
No data.
Status : Received
Published: 2026-02-19T13:16:16.337
Modified: 2026-02-19T13:16:16.337
Link: CVE-2019-25420
No data.
OpenCVE Enrichment
No data.