CVE-2023-4203
Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by a Stored Cross-Site Scripting vulnerability, which can be triggered by authenticated users in the ping tool of the web-interface.
Published:Aug 8, 2023
Last Modified:Feb 13, 2025
EPS:Aug 8, 2023
EPSS Score:0.00866
CVSS Score:9
Affected Products
Vendor
Product
Action
Vendor
Advantech
Product
Eki-1521
Advantech
Eki-1521
Vendor
Advantech
Product
Eki-1521 Firmware
Advantech
Eki-1521 Firmware
Vendor
Advantech
Product
Eki-1522
Advantech
Eki-1522
Vendor
Advantech
Product
Eki-1522 Firmware
Advantech
Eki-1522 Firmware
Vendor
Advantech
Product
Eki-1524
Advantech
Eki-1524
Vendor
Advantech
Product
Eki-1524 Firmware
Advantech
Eki-1524 Firmware
Exploits
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
