CVE-2020-26801

A stored cross-site scripting (XSS) vulnerability was discovered in /Forms/device_vars_1 on TrippLite SU2200RTXL2Ua with firmware version 12.04.0055. This vulnerability allows authenticated attackers to obtain other users' information via a crafted POST request.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tripplite:su2200rtxl2ua_firmware:12.04.0055:*:*:*:*:*:*:*
cpe:2.3:h:tripplite:su2200rtxl2ua:*:*:*:*:*:*:*:*

Information

Published : 2021-06-25 06:15

Updated : 2021-07-01 11:17


NVD link : CVE-2020-26801

Mitre link : CVE-2020-26801


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

tripplite

  • su2200rtxl2ua_firmware
  • su2200rtxl2ua