Medium severity5.4NVD Advisory· Published May 14, 2016· Updated May 6, 2026
CVE-2016-1207
CVE-2016-1207
Description
Cross-site scripting (XSS) vulnerability on I-O DATA DEVICE WN-G300R devices with firmware 1.12 and earlier, WN-G300R2 devices with firmware 1.12 and earlier, and WN-G300R3 devices with firmware 1.01 and earlier allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Affected products
3Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- jvn.jp/en/jp/JVN22978346/index.htmlnvdVendor Advisory
- jvndb.jvn.jp/jvndb/JVNDB-2016-000062nvdVendor Advisory
- www.iodata.jp/support/information/2016/wn-g300r_xss/nvdVendor Advisory
News mentions
0No linked articles in our index yet.