VDB
CVE-2023-5035
CVE-2023-5035
PUBLISHED
Es existiert eine Schwachstelle in Moxa Switch. Diese besteht aufgrund eines Fehlers mit Cookies wenn in einer HTTPS-Session das "Secure"-Attribut fehlt. Ein entfernter, anonymer Angreifer kann diese Schwachstelle ausnutzen, um Informationen offenzulegen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich.
EPSS 0.13% · 33.0th percentile
Risk Scores
EPSS Score
0.13%
33.0th percentile
Exploit Intelligence
- cve-2015-9251 (github-poc)
- cve-2015-9251 (github-poc)
- cve-2015-9251 (github-poc)
- cve-2015-9251 (github-poc)
- cve-2015-9251 (github-poc)
- cve-2015-9251 (github-poc)
- This repository contains a Proof of Concept (PoC) for CVE-2015-9251, a vulnerability in jQuery versions prior to 3.0.0 that allows attackers to perform Cross-Site Scripting (XSS) attacks under certain conditions. (github-poc)
- This repository contains a Proof of Concept (PoC) for CVE-2015-9251, a vulnerability in jQuery versions prior to 3.0.0 that allows attackers to perform Cross-Site Scripting (XSS) attacks under certain conditions. (github-poc)
- This repository contains a Proof of Concept (PoC) for CVE-2015-9251, a vulnerability in jQuery versions prior to 3.0.0 that allows attackers to perform Cross-Site Scripting (XSS) attacks under certain conditions. (github-poc)
- This repository contains a Proof of Concept (PoC) for CVE-2015-9251, a vulnerability in jQuery versions prior to 3.0.0 that allows attackers to perform Cross-Site Scripting (XSS) attacks under certain conditions. (github-poc)
…and 15 more exploits
Timeline
- Nov 2, 2023 CVE Published
- Nov 3, 2023 EPSS Score
- Dec 4, 2023 EPSS Score
- Jan 3, 2024 EPSS Score
- Feb 3, 2024 EPSS Score
- Mar 4, 2024 EPSS Score
- Apr 4, 2024 EPSS Score
- May 5, 2024 EPSS Score
- Jun 4, 2024 EPSS Score
- Jul 5, 2024 EPSS Score
- Aug 5, 2024 EPSS Score
- Sep 4, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-2814.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-2814 advisory
- https://github.com/advisories/GHSA-7v85-4vq6-66gq advisory
- https://github.com/advisories/GHSA-25gj-gfhx-xwgh advisory
- https://www.moxa.com/en/support/product-support/security-advisory/mpsa-230203-pt-g503-series-multiple-vulnerabilities advisory