CVE-2015-4714
22.06.2015, 18:59
Cross-site scripting (XSS) vulnerability in the DreamBox DM500-S allows remote attackers to inject arbitrary web script or HTML via the mode parameter to /body.
Vendor | Product | Version |
---|---|---|
dream-multimedia-tv | dreambox_dm500-s_firmware | * |
𝑥
= Vulnerable software versions