XSS Vulnerability in Domoticz Smart Home System
CVE-2019-15480
5.4MEDIUM
What is CVE-2019-15480?
The vulnerability in Domoticz version 4.10717 allows attackers to exploit an XSS flaw through the 'item.Name' parameter. This can potentially enable unauthorized actions by injecting malicious scripts into the application. The issue underscores the importance of secure coding practices in home automation solutions to safeguard against such attacks. For further details, visit the project's GitHub issue and pull request discussions.
