CVE-2017-12591: XSS
Published Aug 18, 2017
·Updated
ASUS DSL-N10S V2.1.16APAC devices have reflected and stored cross site scripting, as demonstrated by the snmpSysName parameter.
Affected Software
2 affected components
ASUS Dsl-n10s Firmware=v2.1.16_apac
ASUS DSL-N10S
Event History
Aug 18, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-12591?
CVE-2017-12591 is classified as having a medium severity due to its potential for cross site scripting vulnerabilities.
2
How do I fix CVE-2017-12591?
To fix CVE-2017-12591, update the ASUS DSL-N10S firmware to the latest version provided by ASUS.
3
What devices are affected by CVE-2017-12591?
CVE-2017-12591 affects ASUS DSL-N10S devices running firmware version v2.1.16_APAC.
4
What types of vulnerabilities are associated with CVE-2017-12591?
CVE-2017-12591 includes both reflected and stored cross site scripting vulnerabilities.
5
Is it safe to use v2.1.16_APAC firmware after CVE-2017-12591?
Using v2.1.16_APAC firmware is not safe as it is susceptible to security risks identified in CVE-2017-12591.