Lokalnie obsługiwana strona internetowa na urządzeniu Garmin WDU (wersje v1 1.4.6 i v2 5.0) jest podatna na reflected XSS attack. Umożliwia to atakującemu z lokalnego segmentu sieci wykonanie arbitralnego kodu JavaScript w kontekście strony WDU, co może prowadzić do uzyskania pełnego dostępu na poziomie administratora do urządzenia. Aby wykorzystać tę lukę, ofiara musi wykonać dwie czynności: (1) odwiedzić określony URL obsługiwany przez WDU oraz (2) kliknąć element na wyrenderowanej stronie.
▸ Pokaż oryginał (EN)
The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows a reflected cross site scripting (XSS) attack. This allows an attacker on the local network segment to execute arbitrary JavaScript code within the context of the WDU webpage. Full administrator level access to the device is possible. To initiate an exploit of this vulnerability, the victim must execute two actions: (1) view a specific URL served by the WDU, and (2) click an element on the rendered page.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NGarmin Empirbus Wireless Display Unit
HWGarminv1v2Garmin Empirbus Wireless Display Unit Firmware
OSGarmin1.4.65.00
Powiązane podatności
WebSocket Hijacking w Garmin WDU — przejęcie kontroli przez sieć
The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows a symlink attack. If a malicious gr...
The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows its authentication to be bypassed. ...
Integer overflow w Garmin Connect-IQ API — przejęcie firmware urządzenia
Buffer overflow w Garmin Connect-IQ API — przejęcie firmware urządzenia