ZeroHour

CVE-2024-41583

CVSS 3.1
4.7 medium
EPSS
<1%p21
Published
()
Modified
Description

DrayTek Vigor3910 devices through 4.3.2.6 are vulnerable to stored Cross Site Scripting (XSS) by authenticated users due to poor sanitization of the router name.

Vendors
draytek
Products
vigor3910 firmware
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N

In the news