CVE-2025-8834

LOW

JCG Link-net LW-N915R 17s.20.001.908 - XSS

Title source: llm
STIX 2.1

Description

A vulnerability has been found in JCG Link-net LW-N915R 17s.20.001.908. Affected is an unknown function of the file /wireless/basic.asp of the component Wireless Basic Settings Page. The manipulation of the argument Network Name leads to cross site scripting. It is possible to launch the attack remotely.

References (3)

Core 3
Core References
Permissions Required, VDB Entry vdb-entry technical-description
https://vuldb.com/?id.319368
Permissions Required, VDB Entry signature permissions-required
https://vuldb.com/?ctiid.319368
Permissions Required, VDB Entry third-party-advisory
https://vuldb.com/?submit.627228

Scores

CVSS v3 2.4
EPSS 0.0025
EPSS Percentile 16.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-79 CWE-94
Status published
Products (1)
JCG/Link-net LW-N915R 17s.20.001.908
Published Aug 11, 2025
Tracked Since Feb 18, 2026