Beveiligingsadvies

CVE-2023-3526

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-08-08 06:56:05
Laatst bijgewerkt 2025-02-27 21:10:47
Toegewezen door CERTVDE
CVSS-score 9.6
Status PUBLISHED

Beschrijving

In PHOENIX CONTACTs TC ROUTER and TC CLOUD CLIENT in versions prior to 2.07.2 as well as CLOUD CLIENT 1101T-TX/TX prior to 2.06.10 an unauthenticated remote attacker could use a reflective XSS within the license viewer page of the devices in order to execute code in the context of the user's browser.