logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-24497

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-24497

Description:
Cross-site scripting (xss) vulnerabilities exist in the requestHandlers.js detail_device functionality of Milesight VPN v2.0.2. A specially-crafted HTTP request can lead to arbitrary Javascript code injection. An attacker can send an HTTP request to trigger these vulnerabilities.This XSS is exploited through the remote_subnet field of the database
Last updated date:
07/17/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
07/13/2023
Reference url to background

https://talosintelligence.com/vulnerability_reports/TALOS-2023-1704

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy