Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r536-4rjh-7q6r

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In IgniteNet HeliOS GLinq v2.2.1 r2961, the langSelection parameter is stored in the luci configuration file (/etc/config/luci) by the authenticator.htmlauth function. When modified with arbitrary javascript, this causes a denial-of-service condition for all other users.

In IgniteNet HeliOS GLinq v2.2.1 r2961, the langSelection parameter is stored in the luci configuration file (/etc/config/luci) by the authenticator.htmlauth function. When modified with arbitrary javascript, this causes a denial-of-service condition for all other users.

EPSS

Процентиль: 53%
0.00299
Низкий

Связанные уязвимости

CVSS3: 4.3
nvd
больше 5 лет назад

In IgniteNet HeliOS GLinq v2.2.1 r2961, the langSelection parameter is stored in the luci configuration file (/etc/config/luci) by the authenticator.htmlauth function. When modified with arbitrary javascript, this causes a denial-of-service condition for all other users.

EPSS

Процентиль: 53%
0.00299
Низкий