There is a stored XSS vulnerability in ZTE home gateway product. An attacker could modify the gateway name by inserting special characters and trigger an XSS attack when the user views the current topology of the device through the management page.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-28227 | There is a stored XSS vulnerability in ZTE home gateway product. An attacker could modify the gateway name by inserting special characters and trigger an XSS attack when the user views the current topology of the device through the management page. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: zte
Published:
Updated: 2024-08-03T03:36:19.850Z
Reserved: 2022-01-11T00:00:00
Link: CVE-2022-23136
No data.
Status : Modified
Published: 2022-03-30T16:15:11.400
Modified: 2024-11-21T06:48:04.630
Link: CVE-2022-23136
No data.
OpenCVE Enrichment
No data.
EUVD