CVE-2016-1207: XSS
Cross-site scripting (XSS) vulnerability on I-O DATA DEVICE WN-G300R devices with firmware 1.12 and earlier, WN-G300R2 devices with firmware 1.12 and earlier, and WN-G300R3 devices with firmware 1.01 and earlier allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1207?
CVE-2016-1207 has been classified as a medium severity vulnerability.
How do I fix CVE-2016-1207?
To fix CVE-2016-1207, upgrade the firmware of the affected I-O DATA devices to the latest version provided by the manufacturer.
Which devices are affected by CVE-2016-1207?
CVE-2016-1207 affects the I-O DATA WN-G300R, WN-G300R2, and WN-G300R3 devices with specific firmware versions.
Can CVE-2016-1207 be exploited remotely?
Yes, CVE-2016-1207 can be exploited by remote authenticated users to inject arbitrary web scripts or HTML.
What is the impact of CVE-2016-1207?
The impact of CVE-2016-1207 includes potential unauthorized access to users' data and manipulation of web pages viewed by users.