EZCast Pro II Cross-Site Scripting Vulnerability

Vulnerability

Multiple cross-site scripting vulnerabilities have been identified in the Admin UI of EZCast Pro II, all versions including 1.17478.146. These vulnerabilities allow attackers to execute arbitrary JavaScript in the browsers of other Admin UI users.

Impact

Exploitation of these vulnerabilities allows for cross-site scripting, where an attacker can inject and execute malicious scripts in the context of the user's browser.

Remediation

Users are advised to disconnect the dongle from the local network, limit usage to access point functionality, and change the default password.

Added: Jan 27, 2026, 10:20 AM
Updated: Jan 27, 2026, 3:12 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
0.4
exploitability
4.2
remediation
8.3
relevance
2.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.