CVE-2023-31853: XSS
Published Jul 17, 2023
·Updated
Cudy LT400 1.13.4 is vulnerable Cross Site Scripting (XSS) in /cgi-bin/luci/admin/network/bandwidth via the icon parameter.
Affected Software
2 affected components
Cudy Lt400 Firmware=1.13.4
Cudy LT400
Event History
Jul 17, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
03:15 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-31853?
CVE-2023-31853 is classified as a high severity vulnerability due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2023-31853?
To mitigate CVE-2023-31853, upgrade the Cudy LT400 firmware to a version later than 1.13.4 that addresses this XSS vulnerability.
3
What is the impact of CVE-2023-31853?
The impact of CVE-2023-31853 allows an attacker to execute arbitrary JavaScript on the user’s browser, potentially leading to unauthorized access and data theft.
4
Who is affected by CVE-2023-31853?
CVE-2023-31853 affects users of the Cudy LT400 router running firmware version 1.13.4.
5
What type of vulnerability is CVE-2023-31853?
CVE-2023-31853 is a Cross Site Scripting (XSS) vulnerability located in the bandwidth settings of the Cudy LT400 router.