CVE-2023-44301

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Dec 4, 2023
Updated: Dec 18, 2023
CWE ID 79

Summary

CVE-2023-44301 refers to a Reflected Cross-Site Scripting (XSS) vulnerability affecting Dell DM5500 versions 5.14.0.0 and earlier. An attacker with limited network access can potentially exploit this flaw, injecting malicious HTML or JavaScript code into a victim's web browser during a request to the vulnerable web application. Successful exploitation could result in information disclosure, session theft, or client-side request forgery.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share