Description
There is a stored XSS vulnerability in ZTE home gateway product. An attacker could modify the gateway name by inserting special characters and trigger an XSS attack when the user views the current topology of the device through the management page.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-28227 | There is a stored XSS vulnerability in ZTE home gateway product. An attacker could modify the gateway name by inserting special characters and trigger an XSS attack when the user views the current topology of the device through the management page. |
References
History
No history.
Status: PUBLISHED
Assigner: zte
Published:
Updated: 2024-08-03T03:36:19.850Z
Reserved: 2022-01-11T00:00:00.000Z
Link: CVE-2022-23136
No data.
Status : Modified
Published: 2022-03-30T16:15:11.400
Modified: 2024-11-21T06:48:04.630
Link: CVE-2022-23136
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD