Vulnerabilities > I PRO

DATE CVE VULNERABILITY TITLE RISK
2023-09-05 CVE-2023-38574 Open Redirect vulnerability in I-Pro Video Insight
Open redirect vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to redirect users to arbitrary web sites and conduct phishing attacks via a specially crafted URL.
network
low complexity
i-pro CWE-601
6.1
2023-09-05 CVE-2023-39938 Cross-site Scripting vulnerability in I-Pro Video Insight
Reflected cross-site scripting vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to inject an arbitrary script.
network
low complexity
i-pro CWE-79
6.1
2023-09-05 CVE-2023-40535 Cross-site Scripting vulnerability in I-Pro Video Insight
Stored cross-site scripting vulnerability in View setting page of VI Web Client prior to 7.9.6 allows a remote authenticated attacker to inject an arbitrary script.
network
low complexity
i-pro CWE-79
5.4
2023-09-05 CVE-2023-40705 Cross-site Scripting vulnerability in I-Pro Video Insight
Stored cross-site scripting vulnerability in Map setting page of VI Web Client prior to 7.9.6 allows a remote authenticated attacker to inject an arbitrary script.
network
low complexity
i-pro CWE-79
5.4