CVE-2023-45796: XSS vulnerability in Pilz PASvisu and PMI v8xx
A stored cross-site scripting vulnerability in the Runtime component of Pilz PASvisu before 1.14.1 and PMI v8xx up to and including 2.0.33992 allows a low-privileged remote unauthenticated attacker to manipulate process data with potential impact on integrity and/or availability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45796?
The severity of CVE-2023-45796 is categorized as high with a CVSS score of 8.1.
How do I fix CVE-2023-45796?
To fix CVE-2023-45796, upgrade Pilz PASvisu to version 1.14.1 or PMI v8xx to a version newer than 2.0.33992.
What type of vulnerability is CVE-2023-45796?
CVE-2023-45796 is a stored cross-site scripting (XSS) vulnerability affecting specific versions of Pilz PASvisu and PMI.
Who is affected by CVE-2023-45796?
Pilz PASvisu users prior to version 1.14.1 and PMI v8xx users up to and including version 2.0.33992 are affected by CVE-2023-45796.
What impact does CVE-2023-45796 have?
CVE-2023-45796 allows a low-privileged remote unauthenticated attacker to manipulate process data, potentially impacting integrity and availability.