OSRAM SYLVANIA Osram Lightify Pro before 2016-07-26 has XSS in the username field and Wireless Client Mode configuration page.
References
Link | Resource |
---|---|
https://community.rapid7.com/community/infosec/blog/2016/07/26/r7-2016-10-multiple-osram-sylvania-osram-lightify-vulnerabilities-cve-2016-5051-through-5059 | Exploit Mitigation Technical Description Third Party Advisory |
Configurations
History
No history.
Information
Published : 2017-04-10 03:59
Updated : 2024-02-28 15:44
NVD link : CVE-2016-5055
Mitre link : CVE-2016-5055
CVE.ORG link : CVE-2016-5055
JSON object : View
Products Affected
osram
- lightify_pro
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')