Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
Until a firmware patch is made available by the vendor, users are advised to disconnect the dongle from their local network and limit its use strictly to Access Point functionality to minimize the attack surface.
| Link | Providers |
|---|---|
| https://hub.ntc.swiss/ntcf-2025-145332 |
|
Tue, 27 Jan 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Multiple cross-site scripting vulnerabilities in Admin UI of EZCast Pro II version 1.17478.146 allow attackers to execute arbitrary JavaScript code in the browser of other Admin UI users. | |
| Title | Multiple cross-site scripting vulnerabilities in EZCast Pro II Dongle | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: NCSC.ch
Published:
Updated: 2026-01-27T09:31:19.110Z
Reserved: 2026-01-22T12:55:22.578Z
Link: CVE-2026-24348
No data.
Status : Received
Published: 2026-01-27T10:15:49.360
Modified: 2026-01-27T10:15:49.360
Link: CVE-2026-24348
No data.
OpenCVE Enrichment
No data.