CVE-2019-11017 (di-524_firmware)

On D-Link DI-524 V2.06RU devices, multiple Stored and Reflected XSS vulnerabilities were found in the Web Configuration: /spap.htm, /smap.htm, and /cgi-bin/smap, as demonstrated by the cgi-bin/smap RC parameter.
Source: NIST
CVE-2019-11017 (di-524_firmware)

Leave a Reply

Your email address will not be published.