Medium severity5.4NVD Advisory· Published Feb 7, 2023· Updated Jun 17, 2026
CVE-2022-41312
CVE-2022-41312
Description
A stored cross-site scripting vulnerability exists in the web application functionality of Moxa SDS-3008 Series Industrial Ethernet Switch 2.1. A specially-crafted HTTP request can lead to arbitrary Javascript execution. An attacker can send an HTTP request to trigger this vulnerability.Form field id="Switch Description", name "switch_description"
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Range: <=2.1
<=2.1+ 1 more
- (no CPE)range: <=2.1
- (no CPE)range: 2.1
Patches
Vulnerability mechanics
References
3- talosintelligence.com/vulnerability_reports/TALOS-2022-1619nvdExploitTechnical DescriptionThird Party Advisory
- www.moxa.com/en/support/product-support/security-advisory/sds-3008-series-multiple-web-vulnerabilitiesnvdVendor Advisory
- www.talosintelligence.com/vulnerability_reports/TALOS-2022-1619nvd
News mentions
0No linked articles in our index yet.