Stored Cross-Site Scripting in Moxa SDS-3008 Series Industrial Ethernet Switch
CVE-2022-41313
Key Information:
- Vendor
Moxa
- Vendor
- CVE Published:
- 7 February 2023
What is CVE-2022-41313?
The Moxa SDS-3008 Series Industrial Ethernet Switch 2.1 is impacted by a stored cross-site scripting vulnerability that allows for the execution of arbitrary JavaScript. This vulnerability can be exploited through a specially crafted HTTP request, enabling an attacker to manipulate the web application functionality, potentially compromising sensitive information or the integrity of the system. It highlights the importance of maintaining updated firmware and securing web interfaces against such attacks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SDS-3008 Series Industrial Ethernet Switch 2.1
References
CVSS V3.1
CVSS V3.0
Timeline
Vulnerability published
Vulnerability Reserved