Логотип exploitDog
bind:CVE-2023-34360
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-34360

Количество 3

Количество 3

nvd логотип

CVE-2023-34360

около 2 лет назад

A stored cross-site scripting (XSS) issue was discovered within the Custom User Icons functionality of ASUS RT-AX88U running firmware versions 3.0.0.4.388.23110 and prior.  After a remote attacker logging in device with regular user privilege, the remote attacker can perform a Stored Cross-site Scripting (XSS) attack by uploading image which containing JavaScript code.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-28cg-8hgj-ww5p

около 2 лет назад

A stored cross-site scripting (XSS) issue was discovered within the Custom User Icons functionality of ASUS RT-AX88U running firmware versions 3.0.0.4.388.23110 and prior.  After a remote attacker logging in device with regular user privilege, the remote attacker can perform a Stored Cross-site Scripting (XSS) attack by uploading image which containing JavaScript code.

CVSS3: 8.2
EPSS: Низкий
fstec логотип

BDU:2023-08604

около 2 лет назад

Уязвимость микропрограммного обеспечения маршрутизаторов Wi-Fi ASUS RT-AX88U, существующая из-за непринятия мер по защите структуры веб-страницы, позволяющая нарушителю провести атаку межсайтового скриптинга

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-34360

A stored cross-site scripting (XSS) issue was discovered within the Custom User Icons functionality of ASUS RT-AX88U running firmware versions 3.0.0.4.388.23110 and prior.  After a remote attacker logging in device with regular user privilege, the remote attacker can perform a Stored Cross-site Scripting (XSS) attack by uploading image which containing JavaScript code.

CVSS3: 8.2
0%
Низкий
около 2 лет назад
github логотип
GHSA-28cg-8hgj-ww5p

A stored cross-site scripting (XSS) issue was discovered within the Custom User Icons functionality of ASUS RT-AX88U running firmware versions 3.0.0.4.388.23110 and prior.  After a remote attacker logging in device with regular user privilege, the remote attacker can perform a Stored Cross-site Scripting (XSS) attack by uploading image which containing JavaScript code.

CVSS3: 8.2
0%
Низкий
около 2 лет назад
fstec логотип
BDU:2023-08604

Уязвимость микропрограммного обеспечения маршрутизаторов Wi-Fi ASUS RT-AX88U, существующая из-за непринятия мер по защите структуры веб-страницы, позволяющая нарушителю провести атаку межсайтового скриптинга

CVSS3: 8.2
0%
Низкий
около 2 лет назад

Уязвимостей на страницу