CVE-2020-24104: Pix-Link Lv-WR07 Firmware
Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.
XSS on the PIX-Link Repeater/Router LV-WR07 with firmware v28K.Router.20170904 allows attackers to steal credentials without being connected to the network. The attack vector is a crafted ESSID, as demonstrated by the wireless.htm SET2 parameter.
Affected products
- Pix-Link Lv-WR07 Firmware: version 28k.router.20170904 only
Published 2020-08-30. Last modified 2026-06-17.