The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting.
Workaround:
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
https://csirt.divd.nl/CVE-2023-22582/ | third party advisory |
https://csirt.divd.nl/DIVD-2023-00021/ | third party advisory |
https://csirt.divd.nl/DIVD-2023-00021 | |
https://divd.nl/cves/CVE-2023-22582 |