CVE-2022-31873: XSS
Published Jun 17, 2022
·Updated
Trendnet IP-110wn camera fwtv-ip110wnv2(1.2.2.68) has an XSS vulnerability via the prefix parameter in /admin/general.cgi.
Affected Software
2 affected components
Trendnet Tv-ip110wn Firmware=1.2.2.68
Trendnet tv-ip110wn
Event History
Jun 17, 2022
CVE Published
via MITRE·07:26 PM
Data Sourced
via MITRE·07:26 PM
Description
Frequently Asked Questions
1
What is CVE-2022-31873?
CVE-2022-31873 refers to a XSS vulnerability in the Trendnet IP-110wn camera firmware version 1.2.2.68.
2
How does the XSS vulnerability in Trendnet IP-110wn camera firmware work?
The XSS vulnerability is triggered by the prefix parameter in the /admin/general.cgi page of the camera firmware.
3
What is the severity of CVE-2022-31873?
CVE-2022-31873 has a severity rating of 6.1, which is classified as medium severity.
4
How can I fix the XSS vulnerability in Trendnet IP-110wn camera firmware?
To fix the vulnerability, update the firmware to a version that is not affected by the XSS vulnerability.
5
Where can I find more information about CVE-2022-31873?
You can find more information about CVE-2022-31873 on the GitHub page: https://github.com/jayus0821/uai-poc/blob/main/Trendnet/IP-110wn/xss2.md