Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qxxx-8p3c-8q87

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 do not perform sufficient input validation on client requests from the help page. This may allow an attacker to perform a reflected cross-site scripting attack, which could allow an attacker to run code on behalf of the client browser.

InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 do not perform sufficient input validation on client requests from the help page. This may allow an attacker to perform a reflected cross-site scripting attack, which could allow an attacker to run code on behalf of the client browser.

EPSS

Процентиль: 42%
0.002
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 8.8
nvd
больше 4 лет назад

InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 do not perform sufficient input validation on client requests from the help page. This may allow an attacker to perform a reflected cross-site scripting attack, which could allow an attacker to run code on behalf of the client browser.

EPSS

Процентиль: 42%
0.002
Низкий

Дефекты

CWE-79