CVE 7.4 HIGH

Multiple cross-site scripting vulnerabilities in EZCast Pro II Dongle_CVE-2026-24348

7.4 / 10
HIGH
CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/AU:N/R:U

Description

Multiple cross-site scripting vulnerabilities in Admin UI of EZCast Pro II version 1.17478.146 allow attackers to execute arbitrary JavaScript code in the browser of other Admin UI users.

Basic Information

ID CVE-2026-24348
Source NCSC.ch
Published Jan 27, 2026 at 09:31

Affected Product

Vendor EZCast
Product EZCast Pro II
Version 1.17478.146
Affected Versions EZCast EZCast Pro II 1.17478.146

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.