First published: Sun Dec 23 2018(Updated: )
Tenda ADSL modem routers 1.0.1 allow XSS via the hostname of a DHCP client.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tendacn ADSL | =1.0.1 | |
Tendacn ADSL Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-20373 is considered a low to medium severity vulnerability due to its potential for XSS attacks.
To fix CVE-2018-20373, update the Tenda ADSL firmware to the latest version that addresses this vulnerability.
CVE-2018-20373 affects Tenda ADSL modem routers running firmware version 1.0.1.
Users of Tenda ADSL modem routers with firmware version 1.0.1 are impacted by CVE-2018-20373.
CVE-2018-20373 allows attackers to execute cross-site scripting (XSS) attacks via the hostname of a DHCP client.