Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-41922

Опубликовано: 02 июл. 2024
Источник: nvd
CVSS3: 7.2
CVSS3: 5.4
EPSS Низкий

Описание

A 'Cross-site Scripting' (XSS) vulnerability, characterized by improper input neutralization during web page generation, has been discovered. This vulnerability allows for Stored XSS attacks to occur. Multiple areas within the administration interface of the webserver lack adequate input validation, resulting in multiple instances of Stored XSS vulnerabilities.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:kiloview:p1_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:kiloview:p1:-:*:*:*:*:*:*:*
Конфигурация 2

Одновременно

cpe:2.3:o:kiloview:p2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:kiloview:p2:-:*:*:*:*:*:*:*

EPSS

Процентиль: 36%
0.00149
Низкий

7.2 High

CVSS3

5.4 Medium

CVSS3

Дефекты

CWE-79
CWE-79

Связанные уязвимости

CVSS3: 7.2
github
больше 1 года назад

A 'Cross-site Scripting' (XSS) vulnerability, characterized by improper input neutralization during web page generation, has been discovered. This vulnerability allows for Stored XSS attacks to occur. Multiple areas within the administration interface of the webserver lack adequate input validation, resulting in multiple instances of Stored XSS vulnerabilities.

EPSS

Процентиль: 36%
0.00149
Низкий

7.2 High

CVSS3

5.4 Medium

CVSS3

Дефекты

CWE-79
CWE-79