Loading
Generated remediation guidance and an executive summary. No account required.
A persistent (stored) XSS vulnerability in the EyesOfNetwork web interface (aka eonweb) 5.1-0 allows remote authenticated administrators to inject arbitrary web script or HTML via the hosts array parameter to module/admin_device/index.php.
Use CWE-79, Eyesofnetwork vendor hub and Eyesofnetwork product page to widen CVE-2017-15188 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-41572, CVE-2022-41571 and CVE-2022-41570 for nearby disclosures in the same product family.