Cross site scripting (XSS) vulnerability in KeeneticOS before 4.3 at "Wireless ISP" page allows attackers located near to the router to takeover the device via adding additional users with full permissions.
Metrics
Affected Vendors & Products
References
History
Wed, 20 May 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 04 Nov 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:keenetic:keeneticos:*:*:*:*:*:*:*:* |
Fri, 24 Oct 2025 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Keenetic
Keenetic keeneticos |
|
| Vendors & Products |
Keenetic
Keenetic keeneticos |
Thu, 23 Oct 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Thu, 23 Oct 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross site scripting (XSS) vulnerability in KeeneticOS before 4.3 at "Wireless ISP" page allows attackers located near to the router to takeover the device via adding additional users with full permissions. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-05-20T17:57:11.769Z
Reserved: 2025-08-16T00:00:00.000Z
Link: CVE-2025-56008
Updated: 2025-10-23T16:31:30.844Z
Status : Modified
Published: 2025-10-23T15:15:39.213
Modified: 2026-05-20T20:16:35.107
Link: CVE-2025-56008
No data.
OpenCVE Enrichment
Updated: 2025-10-24T10:17:01Z