CVE-2023-40143: Westermo Lynx
An attacker with access to the Westermo Lynx web application that has the vulnerable software could introduce arbitrary JavaScript by injecting a cross-site scripting payload into the "forward.0.domain" parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-40143?
CVE-2023-40143 has a moderate severity rating due to its potential for cross-site scripting exploitation.
How do I fix CVE-2023-40143?
To mitigate CVE-2023-40143, update the Westermo L206-f2g firmware to a version that addresses the vulnerable web application.
What vulnerability does CVE-2023-40143 describe?
CVE-2023-40143 describes a cross-site scripting vulnerability in the Westermo Lynx web application allowing arbitrary JavaScript insertion.
Who is affected by CVE-2023-40143?
Users of the Westermo L206-f2g firmware version 4.24 are affected by CVE-2023-40143.
Can CVE-2023-40143 be exploited remotely?
Yes, CVE-2023-40143 can be exploited remotely by attackers who have access to the vulnerable web application.