Medium severity4.8NVD Advisory· Published Jul 11, 2023· Updated Jun 17, 2026
CVE-2023-37190
CVE-2023-37190
Description
A stored cross-site scripting (XSS) vulnerability in Issabel issabel-pbx v.4.0.0-6 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Virtual Fax Name and Caller ID Name parameters under the New Virtual Fax feature.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
2- github.com/sahiloj/CVE-2023-37190/blob/main/README.mdnvdExploitThird Party Advisory
- reference2.example.com/index.phpnvdBroken Link
News mentions
0No linked articles in our index yet.