CVE-2020-35262
MEDIUMDigisol DG-HR3400 Firmware - Stored Cross-Site Scripting via NTP Server Name and URL Filter Keyword
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-35262. PoCs published by the-girl-who-lived.
AI-analyzed exploit summary This repository provides a detailed description of a stored XSS vulnerability in Digisol DG-HR3400 routers, including affected parameters and proof-of-concept videos. However, it lacks actual exploit code or technical deep-dive into the vulnerability mechanics.
Description
Cross Site Scripting (XSS) vulnerability in Digisol DG-HR3400 can be exploited via the NTP server name in Time and date module and "Keyword" in URL Filter.
Exploits (1)
This repository provides a detailed description of a stored XSS vulnerability in Digisol DG-HR3400 routers, including affected parameters and proof-of-concept videos. However, it lacks actual exploit code or technical deep-dive into the vulnerability mechanics.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N