VYPR
Low severity3.5NVD Advisory· Published Jul 23, 2023· Updated Jun 17, 2026

CVE-2023-3840

CVE-2023-3840

Description

A vulnerability, which was classified as problematic, was found in NxFilter 4.3.2.5. This affects an unknown part of the file /report,daily.jsp?stime=2023%2F07%2F12&timeOption=yesterday&. The manipulation of the argument user leads to cross site scripting. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is VDB-235191. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Affected products

3
  • NxFilter/NxFilter2 versions
    cpe:2.3:a:nxfilter:nxfilter:4.3.2.5:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:nxfilter:nxfilter:4.3.2.5:*:*:*:*:*:*:*
    • (no CPE)range: =4.3.2.5
  • NxFilter/NxFilterdescription

Patches

Vulnerability mechanics

References

2
  • vuldb.comnvdPermissions RequiredThird Party Advisory
  • vuldb.comnvdPermissions RequiredThird Party Advisory

News mentions

0

No linked articles in our index yet.