Vulnerability Description
An issue in Shenzhen TCL Browser TV Web BrowseHere (aka com.tcl.browser) 6.65.022_dab24cc6_231221_gp allows a remote attacker to execute arbitrary JavaScript code via the com.tcl.browser.portal.browse.activity.BrowsePageActivity component.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tcl | Browser Tv Web - Browsehere | 6.65.022_dab24cc6_231221_gp |
Related Weaknesses (CWE)
References
- https://github.com/actuator/com.tcl.browser/blob/main/CWE-94.mdExploit
- https://github.com/actuator/com.tcl.browser/blob/main/CWE-94.mdExploit
FAQ
What is CVE-2023-43481?
CVE-2023-43481 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An issue in Shenzhen TCL Browser TV Web BrowseHere (aka com.tcl.browser) 6.65.022_dab24cc6_231221_gp allows a remote attacker to execute arbitrary JavaScript code via the com.tcl.browser.portal.browse...
How severe is CVE-2023-43481?
CVE-2023-43481 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2023-43481?
Check the references section above for vendor advisories and patch information. Affected products include: Tcl Browser Tv Web - Browsehere.