CVE-2024-41584 - DrayTek Vigor3910 Reflected Cross-Site Scripting (XSS) Vulnerability
CVE ID : CVE-2024-41584 Published : Oct. 3, 2024, 7:15 p.m. | 30 minutes ago Description : DrayTek Vigor3910 devices through 4.3.2.6 are vulnerable to reflected XSS by authenticated users, caused by missing validation of the sFormAuthStr parameter. Severity: 4.7 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
![CVE-2024-41584 - DrayTek Vigor3910 Reflected Cross-Site Scripting (XSS) Vulnerability](https://cdn.cvefeed.io/images/cvefeed.io-new.webp)
Published : Oct. 3, 2024, 7:15 p.m. | 30 minutes ago
Description : DrayTek Vigor3910 devices through 4.3.2.6 are vulnerable to reflected XSS by authenticated users, caused by missing validation of the sFormAuthStr parameter.
Severity: 4.7 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...