CVE-2018-16193: Nec Aterm WF1200CR Firmware

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

Cross-site scripting vulnerability in Aterm WF1200CR and Aterm WG1200CR (Aterm WF1200CR firmware Ver1.1.1 and earlier, Aterm WG1200CR firmware Ver1.0.1 and earlier) allows authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected products

  • Nec Aterm WF1200CR Firmware: up to and including 1.1.1
  • Nec Aterm WG1200CR Firmware: up to and including 1.0.1

Published 2019-01-09. Last modified 2026-06-17.