6.1
CVSSv3

CVE-2023-4592

Published: 03/11/2023 Updated: 13/11/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A Cross-Site Scripting vulnerability has been detected in WPN-XM Serverstack affecting version 0.8.6. This vulnerability could allow a remote malicious user to send a specially crafted JavaScript payload through the /tools/webinterface/index.php parameter and retrieve the cookie session details of an authenticated user, resulting in a session hijacking.

Vulnerable Product Search on Vulmon Subscribe to Product

wpn-xm wpn-xm 0.8.6