Medium severity6.1NVD Advisory· Published Dec 7, 2021· Updated Jun 17, 2026
CVE-2021-44148
CVE-2021-44148
Description
GL.iNet GL-AR150 2.x before 3.x devices, configured as repeaters, allow cgi-bin/router_cgi?action=scanwifi XSS when an attacker creates an SSID with an XSS payload as the name.
Affected products
3- GL.iNet/GL-AR150description
Patches
Vulnerability mechanics
References
1- beaugraham.com/CVE-2021-44148-xss.htmlnvdExploitPatchThird Party Advisory
News mentions
0No linked articles in our index yet.