Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Edimax BR-6288ACL wiz_WISP24gmanual.asp wiz_WISP24gmanual cross site scripting
Vulnerability Description
A vulnerability has been found in Edimax BR-6288ACL up to 1.12. Impacted is the function wiz_WISP24gmanual of the file wiz_WISP24gmanual.asp. Such manipulation of the argument manualssid leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor confirms that the affected product is end-of-life. They confirm that they "will issue a consolidated Security Advisory on our official support website." This vulnerability only affects products that are no longer supported by the maintainer.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
Edimax BR-6288ACL 代码注入漏洞
Vulnerability Description
Edimax BR-6288ACL是中国讯舟(Edimax)公司的一款无线路由器。 Edimax BR-6288ACL 1.12及之前版本存在代码注入漏洞,该漏洞源于对文件wiz_WISP24gmanual.asp中参数manualssid的错误操作,可能导致跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A