Vulnerabilities > Controlbyweb > X 332 24I Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-12-07 CVE-2023-6333 Cross-site Scripting vulnerability in Controlbyweb products
The affected ControlByWeb Relay products are vulnerable to a stored cross-site scripting vulnerability, which could allow an attacker to inject arbitrary scripts into the endpoint of a web interface that could run malicious javascript code during a user's session.
network
low complexity
controlbyweb CWE-79
5.4