The parameter used in the login page of Netvision airPASS is not properly filtered for user input. An unauthenticated remote attacker can insert JavaScript code to the parameter for Reflected Cross-site scripting attacks.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.twcert.org.tw/tw/cp-132-7730-584e3-1.html |
![]() ![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-08-01T20:20:02.489Z
Reserved: 2024-04-15T02:44:17.283Z
Link: CVE-2024-3776

Updated: 2024-08-01T20:20:02.489Z

Status : Awaiting Analysis
Published: 2024-04-15T04:15:16.340
Modified: 2024-11-21T09:30:22.537
Link: CVE-2024-3776

No data.