XSS (persistent) on the Intelbras Wireless N 150Mbps router with firmware WRN 240 allows attackers to steal wireless credentials without being connected to the network, related to userRpm/popupSiteSurveyRpm.htm and userRpm/WlanSecurityRpm.htm. The attack vector is a crafted ESSID, as demonstrated by an "airbase-ng -e" command.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T19:20:41.291Z
Reserved: 2017-09-07T00:00:00
Link: CVE-2017-14219

No data.

Status : Deferred
Published: 2017-09-07T22:29:00.217
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-14219

No data.