Unknown · Ip-Dot Buildagate · CVE-2023-36163
**Name of the Vulnerable Software and Affected Versions**
IP-DOT BuildaGate version BuildaGate5
**Description**
The issue allows a remote attacker to execute arbitrary code via a crafted script to the `mc` parameter of the URL. This is a Cross Site Scripting vulnerability.
**Recommendations**
For IP-DOT BuildaGate version BuildaGate5, consider disabling access to the `mc` parameter in the affected URL until a patch is available. Avoid using the `mc` parameter in the URL to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.