InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 do not perform sufficient input validation on client requests from the help page. This may allow an attacker to perform a reflected cross-site scripting attack, which could allow an attacker to run code on behalf of the client browser.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2021-10-19T12:10:25.490144Z

Updated: 2024-09-17T03:12:58.319Z

Reserved: 2021-08-10T00:00:00

Link: CVE-2021-38466

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-10-19T13:15:10.950

Modified: 2021-10-22T14:45:38.153

Link: CVE-2021-38466

cve-icon Redhat

No data.