Описание
Cross-site scripting (XSS) vulnerability in D-link IP camera DCS-2103 with firmware before 1.20 allows remote attackers to inject arbitrary web script or HTML via the QUERY_STRING to vb.htm.
Ссылки
- ExploitThird Party AdvisoryVDB Entry
- Mailing ListThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party AdvisoryVDB Entry
- Mailing ListThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.20 (исключая)
Одновременно
cpe:2.3:o:dlink:dcs-2103_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dcs-2103:-:*:*:*:*:*:*:*
EPSS
Процентиль: 76%
0.00929
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
github
больше 3 лет назад
Cross-site scripting (XSS) vulnerability in D-link IP camera DCS-2103 with firmware before 1.20 allows remote attackers to inject arbitrary web script or HTML via the QUERY_STRING to vb.htm.
EPSS
Процентиль: 76%
0.00929
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-79