Skip to content

Instantly share code, notes, and snippets.

@fuzzKitty
Created November 17, 2021 14:44
Show Gist options
  • Star 1 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save fuzzKitty/8ca2587213874e94e5c0aedf346c18b1 to your computer and use it in GitHub Desktop.
Save fuzzKitty/8ca2587213874e94e5c0aedf346c18b1 to your computer and use it in GitHub Desktop.
CVE-2020-23617 - Totolink N200RE and N100RE Routers - 2.0
CVE-2020-23617
Vulnerable Product Version: Totolink N200RE and N100RE Routers - 2.0
Vendor: http://totolink.net/
Vulnerability Type: Cross Site Scripting (XSS)
Description: A cross site scripting (XSS) vulnerability in ther error page of
Totolink N200RE and N100RE Routers 2.0 allows attackers to execute
arbitrary web scripts or HTML via a SCRIPT element.
Discovered by:
Omri Inbar, Shlomo Ben Yosef
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment