Home
MEDIUM: 4.1 CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:LDefault status
unknown
A2.01 B00
affected
Description
Successful exploitation of the stored cross-site scripting vulnerability could allow an attacker to inject malicious scripts into device fields and executed in other users’ browser, potentially leading to session hijacking, defacement, credential theft, or privilege escalation.
Product status
A2.01 B00
Credits
Jay Turla
Japz Divino
Jerold Camacho
References
www.csa.gov.sg/alerts-and-advisories/alerts/al-2025-061