mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 17:22:02 +00:00
733 B
733 B
CVE-2019-16533
Description
On DrayTek Vigor2925 devices with firmware 3.8.4.3, Incorrect Access Control exists in loginset.htm, and can be used to trigger XSS. NOTE: this is an end-of-life product.
POC
Reference
- https://www.facebook.com/Huang.YuHsiang.Phone/posts/1815316691945755
- https://www.facebook.com/Huang.YuHsiang.Phone/posts/1815316691945755
Github
No PoCs found on GitHub currently.