Source |
CVE Liste |
Identifiant |
8317300 |
Date de publication |
2023-03-10 16:15:10 (vue: 2023-03-10 18:06:53) |
Titre |
CVE-2023-0746 |
Texte |
The help page in GigaVUE-FM, when using GigaVUE-OS software version 5.0 202, does not require an authenticated user. An attacker could enforce a user into inserting malicious JavaScript code into the URI, that could lead to a Reflected Cross site Scripting. |
Envoyé |
Oui |
Condensat |
0746 202 2023 attacker authenticated code could cross cve does enforce gigavue help inserting javascript lead malicious not page reflected require scripting site software uri user using version when |
Tags |
Guideline
|
Stories |
|
Notes |
|
Move |
|