NA

CVE-2023-43118

Published: 16/10/2023 Updated: 27/10/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Cross Site Request Forgery (CSRF) vulnerability in Chalet application in Extreme Networks Switch Engine (EXOS) prior to 32.5.1.5, fixed in 31.7.2 and 32.5.1.5 allows malicious users to run arbitrary code and cause other unspecified impacts via /jsonrpc API.

Vulnerable Product Search on Vulmon Subscribe to Product

extremenetworks exos