← back
CVE-2025-0869

Cianet ONU GW24AC Login cross site scripting

CVSS 5.3 MEDIUMEPSS 0.4%CWE-79CWE-94
A vulnerability was found in Cianet ONU GW24AC up to 20250127. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Login. The manipulation of the argument browserLang leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
Affected products
Cianet · ONU GW24AC

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →