CVE-2023-25553

Publication date

2023-04-18 20:38:01

Family

schneider

State

PUBLISHED

Description

A CWE-79: Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) vulnerability exists on a DCE endpoint through the logging capabilities of the webserver. Affected products: StruxureWare Data Center Expert (V7.9.2 and prior)