Medium severity6.1NVD Advisory· Published Nov 3, 2023· Updated Jun 17, 2026
CVE-2023-4592
CVE-2023-4592
Description
A Cross-Site Scripting vulnerability has been detected in WPN-XM Serverstack affecting version 0.8.6. This vulnerability could allow a remote attacker to send a specially crafted JavaScript payload through the /tools/webinterface/index.php parameter and retrieve the cookie session details of an authenticated user, resulting in a session hijacking.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: 0.8.6
- Range: <0.8.6
Patches
Vulnerability mechanics
References
1- www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wpn-xm-serverstacknvdThird Party Advisory
News mentions
0No linked articles in our index yet.