First published: Tue May 30 2006(Updated: )
Cross-site scripting (XSS) vulnerability in login_error.shtml for D-Link DSA-3100 allows remote attackers to inject arbitrary HTML or web script via an encoded uname parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
D-link Dsa-3100 Airspot Gateway |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-2653 has a medium severity rating due to its potential for exploitation through cross-site scripting attacks.
To fix CVE-2006-2653, ensure that the D-Link DSA-3100 is updated to the latest firmware version provided by D-Link that addresses this vulnerability.
CVE-2006-2653 affects users of the D-Link DSA-3100 Airspot Gateway.
CVE-2006-2653 is a cross-site scripting (XSS) vulnerability.
Yes, CVE-2006-2653 can be exploited remotely by attackers through crafted requests.