← back
CVE-2023-40153

Cross-site Scripting in DEXMA DEXGate

CVSS 5.4 MEDIUMEPSS 0.3%CWE-79
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.4EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
19 Oct 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
The affected product is vulnerable to a cross-site scripting vulnerability, which could allow an attacker to access the web application to introduce arbitrary Java Script by injecting an XSS payload into the 'hostname' parameter of the vulnerable software.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Affected products
DEXMA · DexGate

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →