PT-2021-17442 · Askey · Askey Rtf8115Vw

Bokanrb

·

Published

2021-02-19

·

Updated

2021-02-28

·

CVE-2021-27403

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Askey RTF8115VW BR SV g11.11 RTF TEF001 V6.54 V014
Description The issue concerns a XSS vulnerability in the "cgi-bin/te acceso router.cgi" endpoint, specifically with the curWebPage parameter. This allows for potential exploitation.
Recommendations For Askey RTF8115VW BR SV g11.11 RTF TEF001 V6.54 V014, avoid using the curWebPage parameter in the "cgi-bin/te acceso router.cgi" endpoint until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-27403

Affected Products

Askey Rtf8115Vw