← Back to CVEs
CVE-2019-11877
N/ADescription
XSS on the PIX-Link Repeater/Router LV-WR09 with firmware v28K.MiniRouter.20180616 allows attackers to steal credentials without being connected to the network. The attack vector is a crafted ESSID.
CVE Details
CVSS v3.1 ScoreN/A
Published6/10/2019
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0
Affected Products
pix-link:lv-wr09pix-link:lv-wr09_firmware
Weaknesses (CWE)
CWE-79
References
http://www.pix-link.com/page50?product_id=144(cve@mitre.org)
https://medium.com/%40igor.lrgomes/cve-2019-11877-credentials-stealing-through-xss-on-pix-link-repeater-9a98c344f58e(cve@mitre.org)
http://www.pix-link.com/page50?product_id=144(af854a3a-2127-422b-91ae-364da2661108)
https://medium.com/%40igor.lrgomes/cve-2019-11877-credentials-stealing-through-xss-on-pix-link-repeater-9a98c344f58e(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.