XSS via orig_url exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices with firmware before fw-b305hw2_380hw6_580hw2_710hw3_1350hw2_2500-7.0.1-build2093. The affected script is guest/preview.cgi.
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
http://seclists.org/bugtraq/2017/Jun/1 | third party advisory mailing list |
https://www.exploit-db.com/exploits/42130/ | exploit |
https://www.x41-dsec.de/lab/advisories/x41-2017-005-peplink/ | third party advisory |