cbcvebase.
CVE-2018-17021
published 2018-09-13

CVE-2018-17021: Cross-site scripting (XSS) vulnerability on ASUS GT-AC5300 devices with firmware through 3.0.0.4.384_32738 allows remote attackers to inject arbitrary web…

medium6.1CVSS 3.0
AVNACLPRNUIRSCCLILAN
Cross-site scripting (XSS) vulnerability on ASUS GT-AC5300 devices with firmware through 3.0.0.4.384_32738 allows remote attackers to inject arbitrary web script or HTML via the appGet.cgi hook parameter.

Affected

1 ranges
VendorProductVersion rangeFixed in
asusgt-ac5300_firmware<= 3.0.0.4.384_32738