Loading
Cross-site scripting (XSS) vulnerability in the Push-Service-Mails feature in AVM FRITZ!OS before 6.30 allows remote attackers to inject arbitrary web script or HTML via the display name in the FROM field of an SIP INVITE message.
Use CWE-79, Avm vendor hub and Fritz\! Os product page to widen CVE-2015-7242 into its surrounding weakness, vendor, and product context.