Security Advisory

CVE-2024-42412

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-08-30 06:29:27
Last updated 2025-09-19 17:23:20
Assigner jpcert
State PUBLISHED

Description

Cross-site scripting vulnerability exists in ELECOM wireless access points due to improper processing of input values in menu.cgi. If a user views a malicious web page while logged in to the product, an arbitrary script may be executed on the users web browser.