Security Advisory
CVE-2024-22397
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) in the SonicOS SSLVPN portal allows a remote authenticated attacker as a firewall admin user to store and execute arbitrary JavaScript code.