Vulnerabilities (CVE)

Filtered by vendor Billion Subscribe
Filtered by product Sg600 R2
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-14918 1 Billion 2 Sg600 R2, Sg600 R2 Firmware 2020-01-21 3.5 LOW 5.4 MEDIUM
XSS in the DHCP lease-status table in Billion Smart Energy Router SG600R2 Firmware v3.02.rc6 allows an attacker to inject arbitrary HTML/JavaScript code to achieve client-side code execution via crafted DHCP request packets to etc_ro/web/internet/dhcpcliinfo.asp.