PT-2024-12856 · Westermo · Westermo Lynx

Aarón Flecha Menéndez

+2

·

Published

2024-02-06

·

Updated

2024-02-13

·

CVE-2023-40143

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Westermo Lynx (affected versions not specified)
Description An attacker with access to the Westermo Lynx web application could introduce arbitrary JavaScript by injecting a cross-site scripting payload into the forward.0.domain parameter.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-40143

Affected Products

Westermo Lynx