CNNVD-202510-3245 Information
Oct 23, 2025
cve
CNNVD ID
CNNVD-202510-3245
Related CVE
- CNNVD Published: 2025-10-23
Description (Chinese)
Vilar VS-IPC1002是中国Vilar公司的一款网络摄像头。 Vilar VS-IPC1002 1.1.0.18版本存在跨站脚本漏洞,该漏洞源于对/cgi-bin/action端点的GET请求参数清理不当,可能导致反射型跨站脚本攻击。
Description (English)
Vilar VS-IPC1002 is a webcam of the Chinese company Vilar. Version Vilar VS-IPC1002 1.1.0.18 contains a cross-site script loophole, which stems from the inappropriate clean-up of the GET request parameters at the /cgi-bin/action endpoint, which may result in a reflective cross-site script attack.
Hazard Level
High
Vulnerability Type
跨站脚本
Affected Vendor
Vilar
Published
2025-10-23
Last Modified
2026-02-24
References
https://cert.pl/en/posts/2025/10/CVE-2025-53701
Share on: