CVE-2018-15874
EUVD-2018-773125.08.2018, 19:29
Cross-site scripting (XSS) vulnerability on D-Link DIR-615 routers 20.07 allows an attacker to inject JavaScript into the "Status -> Active Client Table" page via the hostname field in a DHCP request.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dlink | dir-615_firmware | 20.07 |
𝑥
= Vulnerable software versions