1 results (0.002 seconds)

CVSS: 6.4EPSS: 0%CPEs: 3EXPL: 2

25 Jan 2023 — The web interface of the 'Nighthawk R6220 AC1200 Smart Wi-Fi Router' is vulnerable to a CRLF Injection attack that can be leveraged to perform Reflected XSS and HTML Injection. A malicious unauthenticated attacker can exploit this vulnerability using a specially crafted URL. This affects firmware versions: V1.1.0.112_1.0.1, V1.1.0.114_1.0.1. • https://github.com/dest-3/CVE-2022-47052 • CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') •