CVE-2009-1557
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 7.5%
from disclosure to weapon0 days
Published on NVDMay 6
1st PoCApr 25
exploitation probability
7.5%top 6% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Multiple cross-site scripting (XSS) vulnerabilities on the Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1.00R24 allow remote attackers to inject arbitrary web script or HTML via the next_file parameter to (1) main.cgi, (2) img/main.cgi, or (3) adm/file.cgi; or (4) the this_file parameter to adm/file.cgi.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/32955⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.