CVE-2023-25018

Publication date

2023-03-27 00:00:00

Family

twcert

State

PUBLISHED

Description

RIFARTEK IOT Wall transportation function has insufficient filtering for user input. An authenticated remote attacker with general user privilege can inject JavaScript to perform reflected XSS (Reflected Cross-site scripting) attack.