ID

VAR-200605-0602


TITLE

CNVD-2006-3621

Trust: 0.6

sources: CNVD: CNVD-2006-3621

DESCRIPTION

D-Link Airspot DSA-3100 Gateway is a gateway device developed by DLINK. The D-Link Airspot DSA-3100 Gateway contains a web interface that does not adequately filter the URI data submitted by the user. Remote attackers can use the vulnerability to conduct cross-site scripting attacks and obtain sensitive information. The problem is that the 'login_error.shtml' script lacks filtering of the web parameters submitted by the user, submits malicious script code as parameter data, and induces the user to access, and can obtain sensitive information

Trust: 4.32

sources: CNVD: CNVD-2006-3621 // CNVD: CNVD-2006-3622 // CNVD: CNVD-2006-3619 // CNVD: CNVD-2006-3616 // CNVD: CNVD-2006-3609 // CNVD: CNVD-2006-3608 // CNVD: CNVD-2006-3610 // CNVD: CNVD-2006-3620

IOT TAXONOMY

category:['IoT']sub_category: -

Trust: 4.8

sources: CNVD: CNVD-2006-3621 // CNVD: CNVD-2006-3622 // CNVD: CNVD-2006-3619 // CNVD: CNVD-2006-3616 // CNVD: CNVD-2006-3609 // CNVD: CNVD-2006-3608 // CNVD: CNVD-2006-3610 // CNVD: CNVD-2006-3620

AFFECTED PRODUCTS

vendor:nonemodel: - scope: - version: -

Trust: 4.8

sources: CNVD: CNVD-2006-3621 // CNVD: CNVD-2006-3622 // CNVD: CNVD-2006-3619 // CNVD: CNVD-2006-3616 // CNVD: CNVD-2006-3609 // CNVD: CNVD-2006-3608 // CNVD: CNVD-2006-3610 // CNVD: CNVD-2006-3620

EXTERNAL IDS

db:CNCANid:CNCAN-2006053102

Trust: 4.8

db:CNVDid:CNVD-2006-3621

Trust: 0.6

db:CNVDid:CNVD-2006-3622

Trust: 0.6

db:CNVDid:CNVD-2006-3619

Trust: 0.6

db:CNVDid:CNVD-2006-3616

Trust: 0.6

db:CNVDid:CNVD-2006-3609

Trust: 0.6

db:CNVDid:CNVD-2006-3608

Trust: 0.6

db:CNVDid:CNVD-2006-3610

Trust: 0.6

db:CNVDid:CNVD-2006-3620

Trust: 0.6

sources: CNVD: CNVD-2006-3621 // CNVD: CNVD-2006-3622 // CNVD: CNVD-2006-3619 // CNVD: CNVD-2006-3616 // CNVD: CNVD-2006-3609 // CNVD: CNVD-2006-3608 // CNVD: CNVD-2006-3610 // CNVD: CNVD-2006-3620

REFERENCES

url:http://www.eazel.es/media/advisory003-d-link-dsa-3100-cross-site-scripting.html

Trust: 9.6

sources: CNVD: CNVD-2006-3621 // CNVD: CNVD-2006-3622 // CNVD: CNVD-2006-3619 // CNVD: CNVD-2006-3616 // CNVD: CNVD-2006-3609 // CNVD: CNVD-2006-3608 // CNVD: CNVD-2006-3610 // CNVD: CNVD-2006-3620

SOURCES

db:CNVDid:CNVD-2006-3621
db:CNVDid:CNVD-2006-3622
db:CNVDid:CNVD-2006-3619
db:CNVDid:CNVD-2006-3616
db:CNVDid:CNVD-2006-3609
db:CNVDid:CNVD-2006-3608
db:CNVDid:CNVD-2006-3610
db:CNVDid:CNVD-2006-3620

LAST UPDATE DATE

2022-05-17T01:47:02.815000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2006-3621date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3622date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3619date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3616date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3609date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3608date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3610date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3620date:2006-05-30T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2006-3621date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3622date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3619date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3616date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3609date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3608date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3610date:2006-05-30T00:00:00
db:CNVDid:CNVD-2006-3620date:2006-05-30T00:00:00