Логотип exploitDog
bind:CVE-2025-21603
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-21603

Количество 2

Количество 2

nvd логотип

CVE-2025-21603

около 1 года назад

Cross-site scripting vulnerability exists in MZK-DP300N firmware versions 1.05 and earlier. If an attacker logs in to the affected product and manipulates the device settings, an arbitrary script may be executed on the logged-in user's web browser when accessing a crafted URL.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-34w5-cvqh-fxgw

около 1 года назад

Cross-site scripting vulnerability exists in MZK-DP300N firmware versions 1.05 and earlier. If an attacker logs in to the affected product and manipulates the device settings, an arbitrary script may be executed on the logged-in user's web browser when accessing a crafted URL.

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-21603

Cross-site scripting vulnerability exists in MZK-DP300N firmware versions 1.05 and earlier. If an attacker logs in to the affected product and manipulates the device settings, an arbitrary script may be executed on the logged-in user's web browser when accessing a crafted URL.

CVSS3: 4.8
0%
Низкий
около 1 года назад
github логотип
GHSA-34w5-cvqh-fxgw

Cross-site scripting vulnerability exists in MZK-DP300N firmware versions 1.05 and earlier. If an attacker logs in to the affected product and manipulates the device settings, an arbitrary script may be executed on the logged-in user's web browser when accessing a crafted URL.

CVSS3: 4.8
0%
Низкий
около 1 года назад

Уязвимостей на страницу