TROYANOSYVIRUS
Voltar para CVEs

CVE-2018-10700

N/A

Descricao

An issue was discovered on Moxa AWK-3121 1.19 devices. It provides functionality so that an administrator can change the name of the device. However, the same functionality allows an attacker to execute XSS by injecting an XSS payload. The POST parameter "iw_board_deviceName" is susceptible to this injection.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado6/7/2019
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0

This product uses data from the NVD API but is not endorsed or certified by the NVD.