First published: Fri Jun 17 2022(Updated: )
Trendnet IP-110wn camera fw_tv-ip110wn_v2(1.2.2.68) has an xss vulnerability via the proname parameter in /admin/scheprofile.cgi
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Trendnet Tv-ip110wn Firmware | =1.2.2.68 | |
TRENDnet TV-IP110WN |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-31875 is medium with a CVSS score of 6.1.
The XSS vulnerability in CVE-2022-31875 occurs through the proname parameter in the /admin/scheprofile.cgi page of the Trendnet IP-110wn camera firmware version 1.2.2.68.
No, the TRENDnet TV-IP110WN camera is not vulnerable to CVE-2022-31875.
To mitigate the XSS vulnerability in CVE-2022-31875, it is recommended to update the Trendnet IP-110wn camera firmware to a version that addresses the vulnerability.
More information about CVE-2022-31875 can be found at the following link: [GitHub - Trendnet IP-110wn XSS Vulnerability](https://github.com/jayus0821/uai-poc/blob/main/Trendnet/IP-110wn/xss1.md)