Security Advisory

CVE-2022-26673

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-04-22 06:50:18
Last updated 2024-09-17 01:41:18
Assigner twcert
State PUBLISHED

Description

ASUS RT-AX88U has insufficient filtering for special characters in the HTTP header parameter. A remote attacker with general user privilege can exploit this vulnerability to inject JavaScript and perform Stored Cross-Site Scripting (XSS) attacks.