CVE-2021-20128
MEDIUM
5.4
CVSS Severity Score
Vulnerability Description
The Profile Name field in the floor plan (Network Menu) page in Draytek VigorConnect 1.6.0-B3 was found to be vulnerable to stored XSS, as user input is not properly sanitized.
Affected Platforms (CPE)
📦
Draytek
Vigorconnect
= 1.6.0
