CVE-2019-17667: Comtech h8 Heights Remote Gateway Firmware

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

Comtech H8 Heights Remote Gateway 2.5.1 devices allow XSS and HTML injection via the Site Name (aka SiteName) field.

Affected products

  • Comtech h8 Heights Remote Gateway Firmware: version 2.5.1 only

Published 2019-10-17. Last modified 2026-06-17.