### [CVE-2017-15312](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-15312) ![](https://img.shields.io/static/v1?label=Product&message=SmartCare&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=XSS&color=brighgreen) ### Description Huawei SmartCare V200R003C10 has a stored XSS (cross-site scripting) vulnerability in the dashboard module. A remote authenticated attacker could exploit this vulnerability to inject malicious scripts in the affected device. ### POC #### Reference - http://www.huawei.com/en/psirt/security-notices/huawei-sn-20171201-01-smartcare-en #### Github No PoCs found on GitHub currently.