Back to Database
Status published
Medium
CVE-2020-35262
Cross Site Scripting (XSS) vulnerability in Digisol DG-HR3400 can be...
Vulnerability Description
Cross Site Scripting (XSS) vulnerability in Digisol DG-HR3400 can be exploited via the NTP server name in Time and date module and "Keyword" in URL Filter.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-35262
Credits & Attribution
No credits recorded in the NVD database.
More from digisol
View All →CVE-2018-14027
Digisol Wireless Wifi Home Router HR-3300 allows XSS via the...
Medium
6.1
CVE-2018-12715
DIGISOL DG-HR3400 devices have XSS via a modified SSID when...
Medium
6.1
CVE-2018-12706
DIGISOL DG-BR4000NG devices have a Buffer Overflow via a long...
Critical
9.8
CVE-2018-12705
DIGISOL DG-BR4000NG devices have XSS via the SSID (it is...
Medium
6.1
CVE-2017-6896
Privilege escalation vulnerability on the DIGISOL DG-HR1400 1.00.02 wireless router...
High
8.8
Affected Vendor
digisol
View all reports →Affected Software
dg-hr3400 firmware
Vulnerable Versions:
Unknown
Timeline
Official Publish:
January 6th, 2021
Last Modified:
July 9th, 2026
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.