Security Advisory
CVE-2020-7470
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Sonoff TH 10 and 16 devices with firmware 6.6.0.21 allows XSS via the Friendly Name 1 field (after a successful login with the Web Admin Password).