CVE-2020-6804
28.02.2020, 23:15
A reflected XSS vulnerability exists within the gateway, allowing an attacker to craft a specialized URL which could steal the user's authentication token. When combined with CVE-2020-6803, an attacker could fully compromise the system.
Vendor | Product | Version |
---|---|---|
mozilla | webthings_gateway | 0.3.0 ≤ 𝑥 < 0.12.0 |
𝑥
= Vulnerable software versions