An issue exists in Comcast Defined Technologies microeisbss up to and including 2021. An attacker can inject a stored XSS payload in the Device ID field under Inventory Management to achieve Remote Code Execution and privilege escalation..
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
xfinity comcast defined technologies microeisbss |