Vulnerabilities > Sharp > JH Rvb1 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-02-14 CVE-2024-23786 Cross-site Scripting vulnerability in Sharp Jh-Rv11 Firmware and Jh-Rvb1 Firmware
Cross-site scripting vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to execute an arbitrary script on the web browser of the user who is accessing the management page of the affected product.
network
low complexity
sharp CWE-79
critical
9.3