CVE-2023-29772: XSS
A Cross-site scripting (XSS) vulnerability in the System Log/General Log page of the administrator web UI in ASUS RT-AC51U wireless router firmware version up to and including 3.0.0.4.380.8591 allows remote attackers to inject arbitrary web script or HTML via a malicious network request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-29772?
The severity of CVE-2023-29772 is medium (5.2).
How does CVE-2023-29772 affect ASUS RT-AC51U wireless router firmware?
CVE-2023-29772 affects ASUS RT-AC51U wireless router firmware version up to and including 3.0.0.4.380.8591.
What is the Common Weakness Enumeration (CWE) number for CVE-2023-29772?
The Common Weakness Enumeration (CWE) number for CVE-2023-29772 is 79.
How can remote attackers exploit CVE-2023-29772?
Remote attackers can exploit CVE-2023-29772 by injecting arbitrary web script or HTML via a malicious network request in the System Log/General Log page of the administrator web UI in ASUS RT-AC51U wireless router firmware.
Is the ASUS RT-AC51U wireless router firmware version 3.0.0.4.380.8591 vulnerable to CVE-2023-29772?
Yes, the ASUS RT-AC51U wireless router firmware version 3.0.0.4.380.8591 is vulnerable to CVE-2023-29772.