CVE-2017-12591

ASUS DSL-N10S V2.1.16_APAC devices have reflected and stored cross site scripting, as demonstrated by the snmpSysName parameter.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:asus:dsl-n10s_firmware:v2.1.16_apac:*:*:*:*:*:*:*
cpe:2.3:h:asus:dsl-n10s:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:09

Type Values Removed Values Added
References () https://iscouncil.blogspot.com/2017/08/multiple-vulnerabilities-in-asus.html - Exploit, Third Party Advisory () https://iscouncil.blogspot.com/2017/08/multiple-vulnerabilities-in-asus.html - Exploit, Third Party Advisory

Information

Published : 2017-08-18 17:29

Updated : 2024-11-21 03:09


NVD link : CVE-2017-12591

Mitre link : CVE-2017-12591

CVE.ORG link : CVE-2017-12591


JSON object : View

Products Affected

asus

  • dsl-n10s_firmware
  • dsl-n10s
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')