CVE-2022-26673

Publication date

2022-04-22 06:50:18

Family

twcert

State

PUBLISHED

Description

ASUS RT-AX88U has insufficient filtering for special characters in the HTTP header parameter. A remote attacker with general user privilege can exploit this vulnerability to inject JavaScript and perform Stored Cross-Site Scripting (XSS) attacks.