← Back

CVE-2023-4523

nvd nist
Published: Sep 27, 2023Modified: Jun 17, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

Real Time Automation 460 Series products with versions prior to v8.9.8 are vulnerable to cross-site scripting, which could allow an attacker to run any JavaScript reference from the URL string. If this were to occur, the gateway's HTTP interface would redirect to the main page, which is index.htm.

Affected (1)

1 product
460 Series Firmware
Configuration A
1 vulnerable · 5 platform
Vulnerable SoftwareAffected Versions
Before 8.9.8
Running on/withPlatform Versions
Rtautomation
460etcmm
All versions
Rtautomation
460mcbms
All versions
Rtautomation
460mcbs
All versions
Rtautomation
460mmbms
All versions
Rtautomation
460mmbs
All versions

References (2)

Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.