Medium severity4.8NVD Advisory· Published Feb 9, 2026· Updated Jun 17, 2026
CVE-2025-63354
CVE-2025-63354
Description
Hitron HI3120 v7.2.4.5.2b1 allows stored XSS via the Parental Control option when creating a new filter. The device fails to properly handle inputs, allowing an attacker to inject and execute JavaScript.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:hitrontech:hi3120_firmware:7.2.4.5.2b1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/kakarotossj3/CVEs/blob/main/Hitron/XSSnvdThird Party Advisory
News mentions
0No linked articles in our index yet.