CVE-2014-10018
Teracom T2-B-Gawv1.4U10Y-BI - Cross-Site Scripting via essid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2014-10018. PoCs published by Rakesh S.
AI-analyzed exploit summary This exploit demonstrates a stored XSS vulnerability in Teracom T2-B-Gawv1.4U10Y-BI modems by injecting malicious JavaScript into the 'essid' parameter, which is then executed when the page is rendered.
Description
Cross-site scripting (XSS) vulnerability in webconfig/wlan/country.html/country in the Teracom T2-B-Gawv1.4U10Y-BI modem allows remote attackers to inject arbitrary web script or HTML via the essid parameter.
Exploits (1)
This exploit demonstrates a stored XSS vulnerability in Teracom T2-B-Gawv1.4U10Y-BI modems by injecting malicious JavaScript into the 'essid' parameter, which is then executed when the page is rendered.