CVE-2024-38380

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
17/09/2024
Last modified:
02/10/2024

Description

This vulnerability occurs when user-supplied input is improperly sanitized and then reflected back to the user's browser, allowing an attacker to execute arbitrary JavaScript in the context of the victim's browser session.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:millbeckcommunications:proroute_h685t-w_firmware:3.2.334:*:*:*:*:*:*:*
cpe:2.3:h:millbeckcommunications:proroute_h685t-w:*:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools