CVE-2023-40153
Cross-site Scripting in DEXMA DEXGate
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.4EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
19 Oct 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
The affected product is vulnerable to a cross-site scripting vulnerability, which could allow an attacker to access the web application to introduce arbitrary Java Script by injecting an XSS payload into the 'hostname' parameter of the vulnerable software.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Affected products
DEXMA · DexGateWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →