CVE-2025-63354
EUVD-2025-20736009.02.2026, 15:16
Hitron HI3120 v7.2.4.5.2b1 allows stored XSS via the Parental Control option when creating a new filter. The device fails to properly handle inputs, allowing an attacker to inject and execute JavaScript.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hitrontech | hi3120_firmware | 7.2.4.5.2b1:b1 |
𝑥
= Vulnerable software versions