CVE Published: 23/05/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: jpcert |
Vendor: Vektor,Inc. |
Product: VK All in One Expansion Unit Status : PUBLISHED
CVE-2023-28367 Description
Cross-site scripting vulnerability in CTA post function of VK All in One Expansion Unit 9.88.1.0 and earlier allows a remote authenticated attacker to inject an arbitrary script.