Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-43028
HistoryMay 06, 2023 - 12:00 a.m.

NETGEAR SRX5308 Cross-Site Scripting Vulnerability (CNVD-2023-43028)

2023-05-0600:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
netgear
srx5308
vpn
firewall
cross-site scripting
vulnerability
smtpserver
sensitive information

EPSS

0.001

Percentile

40.8%

The NETGEAR SRX5308 is a VPN firewall appliance from NETGEAR. The NETGEAR SRX5308 suffers from a cross-site scripting vulnerability that originates from incorrect manipulation of the parameter smtpServer.toAddr. The vulnerability can be exploited by an attacker to obtain sensitive information such as user cookies.

EPSS

0.001

Percentile

40.8%

Related for CNVD-2023-43028