A Cross Site Scripting (XSS) vulnerability in Sitecom WLX-2006 Wall Mount Range Extender N300 v1.5 and before allows an attacker to manipulate the language cookie to inject malicious JavaScript code.
Metrics
Affected Vendors & Products
References
History
Tue, 24 Jun 2025 01:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Sitecom
Sitecom wlx-2006 Sitecom wlx-2006 Firmware |
|
CPEs | cpe:2.3:h:sitecom:wlx-2006:-:*:*:*:*:*:*:* cpe:2.3:o:sitecom:wlx-2006_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Sitecom
Sitecom wlx-2006 Sitecom wlx-2006 Firmware |
Mon, 02 Jun 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-79 | |
Metrics |
cvssV3_1
|
Mon, 02 Jun 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A Cross Site Scripting (XSS) vulnerability in Sitecom WLX-2006 Wall Mount Range Extender N300 v1.5 and before allows an attacker to manipulate the language cookie to inject malicious JavaScript code. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-06-02T19:39:28.932Z
Reserved: 2024-07-05T00:00:00.000Z
Link: CVE-2024-40114

Updated: 2025-06-02T19:39:04.148Z

Status : Analyzed
Published: 2025-06-02T16:15:27.127
Modified: 2025-06-24T00:59:48.440
Link: CVE-2024-40114

No data.