First published: Mon Jun 12 2023(Updated: )
** UNSUPPORTED WHEN ASSIGNED ** A stored cross-site scripting (XSS) vulnerability in the urlFilterList function of Asus RT-N10LX Router v2.0.0.39 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the URL Keyword List text field. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Rt-n10lx Firmware | =2.0.0.39 | |
Asus RT-N10LX | ||
All of | ||
Asus Rt-n10lx Firmware | =2.0.0.39 | |
Asus RT-N10LX |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-34941.
The severity rating of CVE-2023-34941 is 5.4 (Medium).
The affected software version of CVE-2023-34941 is Asus RT-N10LX Router v2.0.0.39.
The vulnerability manifests as a stored cross-site scripting (XSS) vulnerability in the urlFilterList function of Asus RT-N10LX Router v2.0.0.39.
An attacker can exploit CVE-2023-34941 by executing arbitrary web scripts or HTML via a crafted payload injected into the URL Keyword List text field.