CVE-2019-13562

MEDIUM

D-Link DIR-655 C <3.02B05 BETA03 - XSS

Title source: llm
STIX 2.1

Description

D-Link DIR-655 C devices before 3.02B05 BETA03 allow XSS, as demonstrated by the /www/ping_response.cgi ping_ipaddr parameter, the /www/ping6_response.cgi ping6_ipaddr parameter, and the /www/apply_sec.cgi html_response_return_page parameter.

Scores

CVSS v3 6.1
EPSS 0.0078
EPSS Percentile 74.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-79
Status published
Products (1)
dlink/dir-655_firmware 3.02b05
Published Jul 11, 2019
Tracked Since Feb 18, 2026