Security Advisory

CVE-2024-3776

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-15 02:58:41
Last updated 2024-08-01 20:20:02
Assigner twcert
State PUBLISHED

Description

The parameter used in the login page of Netvision airPASS is not properly filtered for user input. An unauthenticated remote attacker can insert JavaScript code to the parameter for Reflected Cross-site scripting attacks.