Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-28436

April 22, 2024, 7:24 p.m.

Tags

Product(s) Impacted

D-Link DAP products

  • DAP-2230
  • DAP-2310
  • DAP-2330
  • DAP-2360
  • DAP-2553
  • DAP-2590
  • DAP-2690
  • DAP-2695
  • DAP-3520
  • DAP-3662

Description

Cross Site Scripting vulnerability in D-Link DAP products DAP-2230, DAP-2310, DAP-2330, DAP-2360, DAP-2553, DAP-2590, DAP-2690, DAP-2695, DAP-3520, DAP-3662 allows a remote attacker to execute arbitrary code via the reload parameter in the session_login.php component.

Weaknesses

Date

Published: April 22, 2024, 5:15 p.m.

Last Modified: April 22, 2024, 7:24 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

cve@mitre.org

References