touhidshaikh.com
http://touhidshaikh.com/blog/poc/qwr-1104-wireless-n-router-xss CVE-2017-9243
MEDIUM
QWR-1104 Wireless-N Router - Cross-Site Scripting
Record summary
CVE-2017-9243 has a selected CVSS score of 6.1 (medium); EIP currently links 1 catalogued exploit.
Description
Aries QWR-1104 Wireless-N Router with Firmware Version WRC.253.2.0913 has XSS on the Wireless Site Survey page, exploitable with the name of an access point.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBQWR-1104 Wireless-N Router - Cross-Site ScriptingExploitDB exploitby Touhid M.ShaikhNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2017-9243 42075exploit
https://www.exploit-db.com/exploits/42075