Beveiligingsadvies

CVE-2024-41584

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-10-03 00:00:00
Laatst bijgewerkt 2024-10-03 18:33:32
Toegewezen door mitre
CVSS-score 4.7
Status PUBLISHED

Beschrijving

DrayTek Vigor3910 devices through 4.3.2.6 are vulnerable to reflected XSS by authenticated users, caused by missing validation of the sFormAuthStr parameter.