CVE-2011-4523: XSS
Published Feb 21, 2012
·Updated
Cross-site scripting (XSS) vulnerability in bwview.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.
Affected Software
2 affected components
Advantech Advantech WebAccess<=6.0
Advantech Advantech WebAccess=5.0
Remediation
Event History
Feb 21, 2012
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4523?
The severity of CVE-2011-4523 is classified as medium due to the risk of Cross-site scripting (XSS) exploitation.
2
How do I fix CVE-2011-4523?
To fix CVE-2011-4523, upgrade Advantech WebAccess to version 7.0 or later, which addresses the XSS vulnerability.
3
Which versions of Advantech WebAccess are affected by CVE-2011-4523?
Advantech WebAccess versions before 7.0, including 5.0 and up to 6.0, are affected by CVE-2011-4523.
4
What type of vulnerability is CVE-2011-4523?
CVE-2011-4523 is a Cross-site scripting (XSS) vulnerability that allows for the injection of arbitrary web scripts or HTML.
5
Can CVE-2011-4523 affect any web applications?
CVE-2011-4523 specifically affects Advantech/BroadWin WebAccess, not other unrelated web applications.