CVE-2021-20847

Cross-site scripting vulnerability in Wi-Fi STATION SH-52A (38JP_1_11G, 38JP_1_11J, 38JP_1_11K, 38JP_1_11L, 38JP_1_26F, 38JP_1_26G, 38JP_1_26J, 38JP_2_03B, and 38JP_2_03C) allows a remote unauthenticated attacker to inject an arbitrary script via WebUI of the device.

Date published : 2021-11-30

https://jvn.jp/en/jp/JVN19482703/index.html

https://www.nttdocomo.co.jp/support/product_update/sh52a/index.html