CVE-2024-38501
An unauthenticated remote attacker may use a HTML injection vulnerability with limited length to inject malicious HTML code and gain low-privileged access on the affected device.
More information : https://cert.vde.com/en/advisories/VDE-2024-033