Total vulnerabilities in the database
cgi_handle_request in uhttpd in OpenWrt through 18.06.1 and LEDE through 17.01 has unauthenticated reflected XSS via the URI, as demonstrated by a cgi-bin/?[XSS] URI.
Software | From | Fixed in |
---|---|---|
openwrt / lede | - | 17.01.x |
openwrt / openwrt | - | 18.06.1.x |