1 results (0.011 seconds)
CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 1
CVE-2018-12111 – Canon PrintMe EFI - Cross-Site Scripting
https://notcve.org/view.php?id=CVE-2018-12111
Cross-site scripting (XSS) vulnerability in the Canon PrintMe EFI webinterface allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the /wt3/mydocs.php URI. Una vulnerabilidad Cross-Site Scripting (XSS) en la interfaz web de Canon PrintMe EFI permite que atacantes remotos inyecten scripts web o HTML mediante el parámetro PATH_INFO en el URI /wt3/mydocs.php. Canon PrintMe EFI suffers from a cross site scripting vulnerability. • https://www.exploit-db.com/exploits/44882 https://gist.github.com/huykha/b16109b8e859a992b658dd18b2ee4a7c • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •