CVE-2024-28436
April 22, 2024, 7:24 p.m.
Tags
Product(s) Impacted
D-Link DAP products
- DAP-2230
- DAP-2310
- DAP-2330
- DAP-2360
- DAP-2553
- DAP-2590
- DAP-2690
- DAP-2695
- DAP-3520
- DAP-3662
Description
Cross Site Scripting vulnerability in D-Link DAP products DAP-2230, DAP-2310, DAP-2330, DAP-2360, DAP-2553, DAP-2590, DAP-2690, DAP-2695, DAP-3520, DAP-3662 allows a remote attacker to execute arbitrary code via the reload parameter in the session_login.php component.
Weaknesses
Date
Published: April 22, 2024, 5:15 p.m.
Last Modified: April 22, 2024, 7:24 p.m.
Status : Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
cve@mitre.org
References
https://djallalakira.medium.com/
cve@mitre.org
https://supportannouncement.us.dlink.com/
cve@mitre.org
https://supportannouncement.us.dlink.com/
cve@mitre.org
https://www.dlink.com/
cve@mitre.org