Arbitrary Code Execution Vulnerability in Cobham SAILOR VSAT Ku v.164B019
CVE-2023-44855
6.5MEDIUM
What is CVE-2023-44855?
A Cross Site Scripting (XSS) vulnerability exists in Cobham SAILOR VSAT Ku version 164B019, which enables remote attackers to inject and execute arbitrary code. This vulnerability pertains to the processing of parameters such as rdiag, sender, and recipients within the sub_219C4 function located in the acu_web file. Exploitation of this flaw can result in unauthorized actions on behalf of legitimate users and may lead to wider system compromises.
