Vulnerabilities > Dlink > DI 524 Firmware > 2.06ru

DATE CVE VULNERABILITY TITLE RISK
2019-04-18 CVE-2019-11017 Cross-site Scripting vulnerability in Dlink Di-524 Firmware 2.06Ru
On D-Link DI-524 V2.06RU devices, multiple Stored and Reflected XSS vulnerabilities were found in the Web Configuration: /spap.htm, /smap.htm, and /cgi-bin/smap, as demonstrated by the cgi-bin/smap RC parameter.
network
dlink CWE-79
3.5