Beveiligingsadvies

CVE-2023-49258

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-01-12 14:24:57
Laatst bijgewerkt 2025-06-03 14:05:11
Toegewezen door CERT-PL
CVSS-score 6.1
Status PUBLISHED

Beschrijving

User browser may be forced to execute JavaScript and pass the authentication cookie to the attacker leveraging the XSS vulnerability located at "/gui/terminal_tool.cgi" in the "data" parameter.