cve/2019/CVE-2019-19222.md
2025-09-29 21:09:30 +02:00

850 B

CVE-2019-19222

Description

A Stored XSS issue in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an authenticated attacker to inject arbitrary JavaScript code into the info.html administration page by sending a crafted Forms/wireless_autonetwork_1 POST request.

POC

Reference

Github

No PoCs found on GitHub currently.