Description
webinc/js/info.php on D-Link DIR-816L 2.06.B09_BETA and DIR-803 1.04.B02 devices allows XSS via the HTTP Referer header. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. NOTE: this is typically not exploitable because of URL encoding (except in Internet Explorer) and because a web page cannot specify that a client should make an additional HTTP request with an arbitrary Referer header
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Subscriptions
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T15:40:36.997Z
Reserved: 2020-09-19T00:00:00.000Z
Link: CVE-2020-25786
No data.
Status : Modified
Published: 2020-09-19T20:15:11.903
Modified: 2024-11-21T05:18:46.167
Link: CVE-2020-25786
No data.
OpenCVE Enrichment
No data.
Weaknesses