D-Link DSL-2750U R5B017 Vulnerable to Cross-Site Scripting Attacks Remotely

CVE-2024-9792
2.4LOW

Key Information

Vendor
D-link
Status
Dsl-2750u
Vendor
CVE Published:
10 October 2024

Summary

A vulnerability classified as problematic has been found in D-Link DSL-2750U R5B017. This affects an unknown part of the component Port Forwarding Page. The manipulation of the argument PortMappingDescription leads to cross site scripting. It is possible to initiate the attack remotely.

Affected Version(s)

DSL-2750U = R5B017

CVSS V3.1

Score:
2.4
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Risk change from: null to: 2.4 - (LOW)

  • VulDB entry last update

  • Vulnerability Reserved.

  • VulDB entry created

  • Advisory disclosed

  • Vulnerability published.

Collectors

NVD DatabaseMitre Database

Credit

TheRaghul (VulDB User)
.