A Cross Site Scripting (XSS) vulnerability in Sitecom WLX-2006 Wall Mount Range Extender N300 v1.5 and before allows an attacker to manipulate the language cookie to inject malicious JavaScript code.
Metrics
Affected Vendors & Products
References
History
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 24 Jun 2025 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sitecom
Sitecom wlx-2006 Sitecom wlx-2006 Firmware |
|
| CPEs | cpe:2.3:h:sitecom:wlx-2006:-:*:*:*:*:*:*:* cpe:2.3:o:sitecom:wlx-2006_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Sitecom
Sitecom wlx-2006 Sitecom wlx-2006 Firmware |
Mon, 02 Jun 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Mon, 02 Jun 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Cross Site Scripting (XSS) vulnerability in Sitecom WLX-2006 Wall Mount Range Extender N300 v1.5 and before allows an attacker to manipulate the language cookie to inject malicious JavaScript code. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-06-02T00:00:00.000Z
Updated: 2025-06-02T19:39:28.932Z
Reserved: 2024-07-05T00:00:00.000Z
Link: CVE-2024-40114
Updated: 2025-06-02T19:39:04.148Z
Status : Analyzed
Published: 2025-06-02T16:15:27.127
Modified: 2025-06-24T00:59:48.440
Link: CVE-2024-40114
No data.