CVE-2016-1136

Publication date

2016-01-30 15:00:00

Family

jpcert

State

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.