Home Embedded Vulns General Vulns

CVE-2019-19222

MEDIUM 5.4

Our Analysis: Environment Specific

Our model has classified this vulnerability as relevant to Environment Specific Systems, helping your team prioritize efforts effectively.

Published Date March 4, 2020
Last Modified November 21, 2024
CVSS Vector Not Available

Description

A Stored XSS issue in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an authenticated attacker to inject arbitrary JavaScript code into the info.html administration page by sending a crafted Forms/wireless_autonetwork_1 POST request.

Potentially Affected Vendors