Vulnerabilities (CVE)

Filtered by vendor Openwrt Subscribe
Filtered by product Lede
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-19630 1 Openwrt 2 Lede, Openwrt 2018-12-31 4.3 MEDIUM 6.1 MEDIUM
cgi_handle_request in uhttpd in OpenWrt through 18.06.1 and LEDE through 17.01 has unauthenticated reflected XSS via the URI, as demonstrated by a cgi-bin/?[XSS] URI.