First published: Tue Nov 15 2022(Updated: )
In Tenda AC1200 Router model W15Ev2 V15.11.0.10(1576), a Stored Cross Site Scripting (XSS) vulnerability exists allowing an attacker to execute JavaScript code via the applications stored hostname.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda W15e Firmware | =15.11.0.10\(1576\) | |
Tenda AC1200 V-W15Ev2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-40846 has a medium severity rating due to its potential for Stored Cross Site Scripting (XSS) attacks.
To mitigate CVE-2022-40846, update the Tenda AC1200 Router model W15Ev2 to the latest firmware version provided by Tenda.
The impact of CVE-2022-40846 includes allowing attackers to execute arbitrary JavaScript code through stored hostnames.
CVE-2022-40846 specifically affects the Tenda AC1200 Router model W15Ev2 running firmware version 15.11.0.10(1576).
CVE-2022-40846 is categorized as a Stored Cross Site Scripting (XSS) vulnerability.