5.7 Medium
AI Score
Confidence
High
0.001 Low
EPSS
Percentile
38.0%
Cross-site scripting (XSS) vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
jvn.jp/en/jp/JVN54686544/index.html
jvndb.jvn.jp/jvndb/JVNDB-2016-000007
www.au.kddi.com/mobile/service/smartphone/wifi/homespot/