MEDIUM
Smoothwall Express 3.1 'iptools.cgi' Cross-Site Scripting
Published Feb 16, 2026
5.1
MEDIUMCVSS 4.0
EPSS 0.26%
Description
Smoothwall Express 3.1-SP4-polar-x86_64-update9 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by manipulating the IP parameter. Attackers can send POST requests to the iptools.cgi endpoint with script payloads in the IP parameter to execute arbitrary JavaScript in victim browsers.
Affected products
-
Affected
- 3.1
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Smoothwall | Smoothwall Express | unknown | Affected
|
- 3.1
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (4)
- http://www.smoothwall.org product
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-19616 Advisory
- https://www.exploit-db.com/exploits/46333 exploitThird Party AdvisoryVDB Entry
- https://www.vulncheck.com/advisories/smoothwall-express-iptoolscgi-cross-site-scripting third-party-advisoryBroken Link
| Link | Providers | Tags |
|---|---|---|
| http://www.smoothwall.org | product | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-19616 | Advisory | |
| https://www.exploit-db.com/exploits/46333 | exploitThird Party AdvisoryVDB Entry | |
| https://www.vulncheck.com/advisories/smoothwall-express-iptoolscgi-cross-site-scripting | third-party-advisoryBroken Link |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulnCheck
Published Feb 16, 2026
Updated Mar 5, 2026
Reserved Feb 16, 2026
Link CVE-2019-25392
CISA Vulnrichment
Updated Feb 17, 2026
Red Hat
No data
GitHub
No data