CVE-2024-3776

Publication date

2024-04-15 02:58:41

Family

twcert

State

PUBLISHED

Description

The parameter used in the login page of Netvision airPASS is not properly filtered for user input. An unauthenticated remote attacker can insert JavaScript code to the parameter for Reflected Cross-site scripting attacks.