CVE-2023-22582: Reflected Cross-Site Scripting in Danfoss AK-EM100
Published Jun 11, 2023
·Updated
The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting.
Affected Software
4 affected components
All of the following
Danfoss AK-EM100
Danfoss Ak-em100 Firmware<2.2.0.12
Danfoss Ak-em100 Firmware<2.2.0.12
Danfoss AK-EM100
Event History
Jun 11, 2023
CVE Published
via MITRE·01:17 PM
Data Sourced
via MITRE·01:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-22582?
CVE-2023-22582 is a vulnerability in the Danfoss AK-EM100 web applications that allows for Reflected Cross-Site Scripting.
2
What is the severity of CVE-2023-22582?
CVE-2023-22582 has a severity level of critical, with a severity value of 6.1.
3
How does CVE-2023-22582 affect the Danfoss AK-EM100 firmware?
CVE-2023-22582 affects Danfoss AK-EM100 firmware versions up to and excluding 2.2.0.12.
4
What are the affected software versions of CVE-2023-22582?
CVE-2023-22582 affects Danfoss AK-EM100 firmware versions up to and excluding 2.2.0.12.
5
How can I fix CVE-2023-22582?
To fix CVE-2023-22582, Danfoss AK-EM100 firmware should be updated to a version beyond 2.2.0.12.