Lucene search

K
cve[email protected]CVE-2023-24181
HistoryApr 10, 2023 - 2:15 p.m.

CVE-2023-24181

2023-04-1014:15:09
CWE-79
web.nvd.nist.gov
18
cve-2023-24181
luci
openwrt-22.03
xss
vulnerability

5.4 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

0.001 Low

EPSS

Percentile

40.2%

LuCI openwrt-22.03 branch git-22.361.69894-438c598 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the component /openvpn/pageswitch.htm.

Affected configurations

NVD
Node
openwrtluciMatch22.03.3
CPENameOperatorVersion
openwrt:luciopenwrt lucieq22.03.3

5.4 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

0.001 Low

EPSS

Percentile

40.2%

Related for CVE-2023-24181