Cross-Site Scripting Vulnerability in Softing TH SCOPE
CVE-2023-37571

6.1MEDIUM

Key Information:

Vendor

Softing

Status
Vendor
CVE Published:
30 January 2024

What is CVE-2023-37571?

The Softing TH SCOPE product, up to version 3.70, has a vulnerability that allows for Cross-Site Scripting (XSS) attacks. This type of vulnerability can enable an attacker to inject malicious scripts into webpages viewed by other users, potentially compromising sensitive data and security. Users of this product should take immediate action to update their software to preserve the integrity of their systems and protect against exploitation of this vulnerability. Regular updates and security assessments are crucial for maintaining robust cybersecurity frameworks.

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

.