luiss/cve_repo

luiss/cve_repo

Releases0
Repository containing findings, CVEs and exploits for them.

CVE History

CVEPublishedCVSS v3CVSS v2
5.4 MEDIUM3.5 LOW

An XSS vulnerability on Technicolor TC7300 STFA.51.20 devices allows remote attackers to inject arbitrary web script via the FileName parameter to /FTPDiag.asp.

5.4 MEDIUM3.5 LOW

An XSS vulnerability on Technicolor TC7300 STFA.51.20 devices allows remote attackers to inject arbitrary web script via the "Connected Clients" field to /wlanAccess.asp. An intranet host can use a crafted hostname to exploit this.