CVE-2022-40010: XSS
Tenda AC6 AC1200 Smart Dual-Band WiFi Router 15.03.06.50multi was discovered to contain a cross-site scripting (XSS) vulnerability via the deviceId parameter in the Parental Control module.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-40010?
CVE-2022-40010 is a cross-site scripting (XSS) vulnerability found in the Tenda AC6 AC1200 Smart Dual-Band WiFi Router 15.03.06.50_multi firmware.
How severe is CVE-2022-40010?
CVE-2022-40010 has a severity rating of 5.4, which is considered medium.
How does the CVE-2022-40010 vulnerability occur?
CVE-2022-40010 occurs due to a cross-site scripting (XSS) vulnerability in the Parental Control module of the Tenda AC6 AC1200 Smart Dual-Band WiFi Router.
How can I fix CVE-2022-40010?
To fix CVE-2022-40010, it is recommended to update the Tenda AC6 AC1200 Smart Dual-Band WiFi Router firmware to a version that addresses the vulnerability.
Where can I find more information about CVE-2022-40010?
You can find more information about CVE-2022-40010 in the following link: http://packetstormsecurity.com/files/173029/Tenda-AC6-AC1200-15.03.06.50_multi-Cross-Site-Scripting.html