Security Advisory

CVE-2023-49258

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-01-12 14:24:57
Last updated 2025-06-03 14:05:11
Assigner CERT-PL
State PUBLISHED

Description

User browser may be forced to execute JavaScript and pass the authentication cookie to the attacker leveraging the XSS vulnerability located at "/gui/terminal_tool.cgi" in the "data" parameter.