MEDIUM
Stored Cross-site scripting (XSS) vulnerability in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows allows authenticated attackers to inject arbitrary web script or HTML via the implementation of portalPictureUpload functionality
Published May 3, 2018
5.4
MEDIUMCVSS 3.0
EPSS 0.60%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.