On Netis DL4323 devices, XSS exists via the urlFQDN parameter to form2url.cgi (aka the Keyword field of the URL Blocking Configuration).
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T02:32:10.615Z

Reserved: 2019-12-29T00:00:00

Link: CVE-2019-20070

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-12-30T00:15:11.037

Modified: 2024-11-21T04:38:00.037

Link: CVE-2019-20070

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.