ZeroHour

CVE-2024-38380

CVSS 3.1
5.4 medium
EPSS
<1%p35
Published
()
Modified
Description

This vulnerability occurs when user-supplied input is improperly sanitized and then reflected back to the user's browser, allowing an attacker to execute arbitrary JavaScript in the context of the victim's browser session.

Vendors
millbeckcommunications
Products
proroute h685t-w firmware
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.