CVE-2023-49258

Publication date

2024-01-12 14:24:57

Family

CERT-PL

State

PUBLISHED

Description

User browser may be forced to execute JavaScript and pass the authentication cookie to the attacker leveraging the XSS vulnerability located at "/gui/terminal_tool.cgi" in the "data" parameter.