Real Time Automation 460 Series products with versions prior to v8.9.8 are vulnerable to cross-site scripting, which could allow an attacker to run any JavaScript reference from the URL string. If this were to occur, the gateway's HTTP interface would redirect to the main page, which is index.htm.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2023-09-27T18:08:26.220Z
Updated: 2024-08-02T07:31:06.157Z
Reserved: 2023-08-24T17:52:27.663Z
Link: CVE-2023-4523
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-09-27T19:15:12.373
Modified: 2024-11-21T08:35:20.773
Link: CVE-2023-4523
Redhat
No data.