CVE-2022-40844: XSS
In Tenda (Shenzhen Tenda Technology Co., Ltd) AC1200 Router model W15Ev2 V15.11.0.10(1576), a Stored Cross Site Scripting (XSS) issue exists allowing an attacker to execute JavaScript code via the applications website filtering tab, specifically the URL body.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-40844?
CVE-2022-40844 is classified as a medium severity vulnerability due to its potential to allow stored cross-site scripting attacks.
How do I fix CVE-2022-40844?
To fix CVE-2022-40844, upgrade the Tenda AC1200 router firmware to a version that addresses the stored XSS vulnerability.
What type of vulnerability is CVE-2022-40844?
CVE-2022-40844 is a Stored Cross Site Scripting (XSS) vulnerability.
Who is affected by CVE-2022-40844?
Users of the Tenda AC1200 Router model W15Ev2 running firmware version 15.11.0.10(1576) are affected by CVE-2022-40844.
What can attackers do with CVE-2022-40844?
Attackers can exploit CVE-2022-40844 to execute JavaScript code in the context of the affected application's website filtering functionality.