A vulnerability in Red Lion Europe mbNET/mbNET.rokey and Helmholz REX 200 and REX 250 devices with firmware lower 7.3.2 allows an
authenticated remote attacker with high privileges to inject malicious HTML or JavaScript code (XSS).
authenticated remote attacker with high privileges to inject malicious HTML or JavaScript code (XSS).
Project Subscriptions
| Vendors | Products |
|---|---|
|
Helmholz
Subscribe
|
|
|
Redlion
Subscribe
|
Mbnet.rokey Rkh 210
Subscribe
Mbnet.rokey Rkh 210 Firmware
Subscribe
Mbnet.rokey Rkh 216
Subscribe
Mbnet.rokey Rkh 216 Firmware
Subscribe
Mbnet.rokey Rkh 235
Subscribe
Mbnet.rokey Rkh 235 Firmware
Subscribe
Mbnet.rokey Rkh 259
Subscribe
Mbnet.rokey Rkh 259 Firmware
Subscribe
Mbnet Mdh 811
Subscribe
Mbnet Mdh 811 Firmware
Subscribe
Mbnet Mdh 816
Subscribe
Mbnet Mdh 816 Firmware
Subscribe
Mbnet Mdh 831
Subscribe
Mbnet Mdh 831 Firmware
Subscribe
Mbnet Mdh 835
Subscribe
Mbnet Mdh 835 Firmware
Subscribe
Mbnet Mdh 841
Subscribe
Mbnet Mdh 841 Firmware
Subscribe
Mbnet Mdh 850
Subscribe
Mbnet Mdh 850 Firmware
Subscribe
Mbnet Mdh 855
Subscribe
Mbnet Mdh 855 Firmware
Subscribe
Mbnet Mdh 858
Subscribe
Mbnet Mdh 858 Firmware
Subscribe
Mbnet Mdh 859
Subscribe
Mbnet Mdh 859 Firmware
Subscribe
Mbnet Mdh 871
Subscribe
Mbnet Mdh 871 Firmware
Subscribe
Mbnet Mdh 876
Subscribe
Mbnet Mdh 876 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-38489 | A vulnerability in Red Lion Europe mbNET/mbNET.rokey and Helmholz REX 200 and REX 250 devices with firmware lower 7.3.2 allows an authenticated remote attacker with high privileges to inject malicious HTML or JavaScript code (XSS). |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2024-08-02T16:10:06.979Z
Reserved: 2023-06-05T12:05:57.451Z
Link: CVE-2023-34412
No data.
Status : Modified
Published: 2023-08-17T14:15:09.700
Modified: 2024-11-21T08:07:11.220
Link: CVE-2023-34412
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD