On D-Link DIR-615 devices, the User Account Configuration page is vulnerable to blind XSS via the name field.
2019-12-18T13:15:11.803
2024-11-21T04:35:17.893
Modified
CVSSv3.1: 4.8 (MEDIUM)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | dlink | dir-615_firmware | 20.07 | Yes |
Hardware | dlink | dir-615 | - | No |