CVE-2024-28436

April 22, 2024, 7:24 p.m.

Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.

Products

D-Link DAP products

  • DAP-2230
  • DAP-2310
  • DAP-2330
  • DAP-2360
  • DAP-2553
  • DAP-2590
  • DAP-2690
  • DAP-2695
  • DAP-3520
  • DAP-3662

Source

cve@mitre.org

Tags

CVE-2024-28436 details

Published : April 22, 2024, 5:15 p.m.
Last Modified : April 22, 2024, 7:24 p.m.

Description

Cross Site Scripting vulnerability in D-Link DAP products DAP-2230, DAP-2310, DAP-2330, DAP-2360, DAP-2553, DAP-2590, DAP-2690, DAP-2695, DAP-3520, DAP-3662 allows a remote attacker to execute arbitrary code via the reload parameter in the session_login.php component.

CVSS Score

1 2 3 4 5 6 7 8 9 10

Weakness

Weakness Name Description
This website uses the NVD API, but is not approved or certified by it.