First published: Fri Jun 14 2024(Updated: )
The parameter used in the certain page of ASUS Download Master is not properly filtered for user input. A remote attacker with administrative privilege can insert JavaScript code to the parameter for Stored Cross-site scripting attacks.
Credit: twcert@cert.org.tw
Affected Software | Affected Version | How to fix |
---|---|---|
ASUS Download Master | <3.1.0.114 |
Update to version 3.1.0.114 or later
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.