CVE-2024-31160
14.06.2024, 04:15
The parameter used in the certain page of ASUS Download Master is not properly filtered for user input. A remote attacker with administrative privilege can insert JavaScript code to the parameter for Stored Cross-site scripting attacks.
Vendor | Product | Version |
---|---|---|
asus | download_master | 𝑥 < 3.1.0.114 |
𝑥
= Vulnerable software versions