ZeroHour

CVE-2018-18244

PoC
CVSS 3.0
6.1 medium
EPSS
<1%p55
Published
()
Modified
Description

Cross-site scripting in syslog.html in VIVOTEK Network Camera Series products with firmware 0x06x to 0x08x allows remote attackers to execute arbitrary JavaScript code via an HTTP Referer Header.

Vendors
vivotek
Products
camera
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.