CVE-2014-6189: IBM Security Network Protection 3100 Firmware

Medium severity, CVSS 6.1. EPSS: 1.2% chance of exploitation in the next 30 days.

Cross-site scripting (XSS) vulnerability in IBM Security Network Protection 3100, 4100, 5100, and 7100 devices with firmware 5.2 before 5.2.0.0-ISS-XGS-All-Models-Hotfix-FP0008 and 5.3 before 5.3.0.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected products

  • IBM Security Network Protection 3100 Firmware: version 5.2 only; version 5.3 only
  • IBM Security Network Protection 4100 Firmware: version 5.2 only; version 5.3 only
  • IBM Security Network Protection 5100 Firmware: version 5.2 only; version 5.3 only
  • IBM Security Network Protection 7100 Firmware: version 5.2 only; version 5.3 only

Published 2017-08-22. Last modified 2026-06-17.