DASAN H660GW devices have Stored XSS in the Port Forwarding functionality.
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
https://wojciechregula.blog/authenticated-rce-in-dasan-routers/ | third party advisory exploit |