Cross-site scripting (XSS) vulnerability in Meinberg NTP Server firmware on LANTIME M-Series devices 6.15.019 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
History

Tue, 04 Nov 2025 23:30:00 +0000

Type Values Removed Values Added
Title Meinberg Radio Clocks LANTIME M-Series
References
Metrics cvssV2_0

{'score': 4.3, 'vector': 'AV:N/AC:M/Au:N/C:N/I:P/A:N'}

cvssV2_0

{'score': 7.5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:P/A:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2014-11-05T11:00:00

Updated: 2025-11-04T23:19:36.651Z

Reserved: 2014-08-22T00:00:00

Link: CVE-2014-5417

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-11-05T11:55:06.827

Modified: 2025-11-05T00:15:33.907

Link: CVE-2014-5417

cve-icon Redhat

No data.