Security Advisory

CVE-2018-13022

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-11-27 21:00:00
Last updated 2024-08-05 08:52:49
Assigner mitre
State PUBLISHED

Description

Cross-site scripting vulnerability in the API 404 page on Xiaomi Mi Router 3 version 2.22.15 allows attackers to execute arbitrary JavaScript via a modified URL path.