Cross-Site Scripting Vulnerability in D-Link DIR-615 T1 Devices
CVE-2018-10110
4.8MEDIUM
Summary
D-Link DIR-615 T1 devices are susceptible to cross-site scripting through the Add User feature, allowing attackers to inject malicious scripts. This vulnerability can potentially compromise user sessions and extract sensitive information, presenting significant risks to network security. Proper security measures and updates are necessary to mitigate the risks associated with this vulnerability.
References
CVSS V3.1
Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved