Vulnerability Details CVE-2021-20855
Cross-site scripting vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.4%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 3.5
Products affected by CVE-2021-20855
-
cpe:2.3:h:elecom:wrh-733gbk:-
-
cpe:2.3:h:elecom:wrh-733gwh:-
-
cpe:2.3:o:elecom:wrh-733gbk_firmware:*
-
cpe:2.3:o:elecom:wrh-733gwh_firmware:*