CVE-2023-49965: XSS
Published Apr 5, 2024
·Updated
SpaceX Starlink Wi-Fi router Gen 2 before 2023.48.0 allows XSS via the ssid and password parameters on the Setup Page.
Affected Software
1 affected component
SpaceX Starlink Wi-Fi router Gen 2<2023.48.0
Event History
Apr 5, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-49965?
CVE-2023-49965 is classified as a high-severity vulnerability due to its potential for XSS attacks.
2
How do I fix CVE-2023-49965?
To remediate CVE-2023-49965, update your SpaceX Starlink Wi-Fi router Gen 2 to version 2023.48.0 or later.
3
What type of attack is possible with CVE-2023-49965?
CVE-2023-49965 allows for cross-site scripting (XSS) attacks through the ssid and password parameters on the router's Setup Page.
4
Which devices are affected by CVE-2023-49965?
CVE-2023-49965 affects the SpaceX Starlink Wi-Fi router Gen 2 prior to version 2023.48.0.
5
What are the potential risks of CVE-2023-49965?
Exploitation of CVE-2023-49965 can lead to unauthorized access to sensitive information and malicious actions on the user's network.