CVE-2024-9477

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AirTies Air4443 Firmware allows Cross-Site Scripting (XSS). This issue affects Air4443 Firmware: through 14102024. NOTE: The vendor was contacted and it was learned that the product clas...

medium 6.1 CVSS 3.1
Published: Nov 13, 2024
Modified: Jun 2, 2026
Vendor: Airties
Product: Air4443 Firmware

Description

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AirTies Air4443 Firmware allows Cross-Site Scripting (XSS).

This issue affects Air4443 Firmware: through 14102024.

NOTE: The vendor was contacted and it was learned that the product classified as End-of-Life and End-of-Support.

References