Vulnerability Description
Cross Site Scripting (XSS) in Voltronic Power SNMP Web Pro v.1.1 allows an attacker to execute arbitrary code via a crafted script within a request to the webserver.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Voltronicpower | Snmp Web Pro | 1.1 |
Related Weaknesses (CWE)
References
- https://gist.github.com/ph4nt0mbyt3/b237bfb06b2bff405ab47e4ea52c0bd2ExploitThird Party Advisory
- https://gist.github.com/ph4nt0mbyt3/b237bfb06b2bff405ab47e4ea52c0bd2ExploitThird Party Advisory
FAQ
What is CVE-2023-49563?
CVE-2023-49563 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Cross Site Scripting (XSS) in Voltronic Power SNMP Web Pro v.1.1 allows an attacker to execute arbitrary code via a crafted script within a request to the webserver.
How severe is CVE-2023-49563?
CVE-2023-49563 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-49563?
Check the references section above for vendor advisories and patch information. Affected products include: Voltronicpower Snmp Web Pro.