Medium severity6.1NVD Advisory· Published Feb 17, 2020· Updated Jun 17, 2026
CVE-2020-9022
CVE-2020-9022
Description
An issue was discovered on Xirrus XR520, XR620, XR2436, and XH2-120 devices. The cgi-bin/ViewPage.cgi user parameter allows XSS.
Affected products
9- cpe:2.3:o:cambiumnetworks:xh2-120_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:cambiumnetworks:xr2436_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:cambiumnetworks:xr520_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:cambiumnetworks:xr620_firmware:-:*:*:*:*:*:*:*
- Xirrus/XR520description
Patches
Vulnerability mechanics
References
1- sku11army.blogspot.com/2020/01/xirrus-xirrus-wifi-xss.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.