Medium severity6.1NVD Advisory· Published Jan 25, 2024· Updated Jun 17, 2026
CVE-2023-33758
CVE-2023-33758
Description
Splicecom Maximiser Soft PBX v1.5 and before was discovered to contain a cross-site scripting (XSS) vulnerability via the CLIENT_NAME and DEVICE_GUID fields in the login component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Splicecom/Maximiser Soft PBXdescription
cpe:2.3:a:splicecom:maximiser_soft_pbx:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:splicecom:maximiser_soft_pbx:*:*:*:*:*:*:*:*range: <=1.5
- (no CPE)range: <=1.5
Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.