CVE-2023-46470: XSS
Cross Site Scripting vulnerability in Space Applications Services Yamcs v.5.8.6 allows a remote attacker to execute arbitrary code via crafted telecommand in the timeline view of the ArchiveBrowser.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-46470?
CVE-2023-46470 is a Cross Site Scripting vulnerability in Space Applications Services Yamcs v.5.8.6.
How does CVE-2023-46470 affect the software?
CVE-2023-46470 allows a remote attacker to execute arbitrary code via a crafted telecommand in the timeline view of the ArchiveBrowser.
What is the severity of CVE-2023-46470?
CVE-2023-46470 has a severity rating of medium (5.4).
How can I fix CVE-2023-46470?
To fix CVE-2023-46470, it is recommended to upgrade to a version of Space Applications Services Yamcs that is not affected by this vulnerability.
Where can I find more information about CVE-2023-46470?
You can find more information about CVE-2023-46470 at this LinkedIn post: [https://www.linkedin.com/pulse/more-xss-clickjacking-yamcs-v586-visionspace-technologies-uvevf](https://www.linkedin.com/pulse/more-xss-clickjacking-yamcs-v586-visionspace-technologies-uvevf)