AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-25018

MEDIUM · CVSS 5.4 EPSS 0.43%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-03-27 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.4. It affects Java. It may be remotely exploitable.

CVE
CVE-2023-25018
Severity
MEDIUM
CVSS
5.4
EPSS
0.43%
Java

Original NVD Description

RIFARTEK IOT Wall transportation function has insufficient filtering for user input. An authenticated remote attacker with general user privilege can inject JavaScript to perform reflected XSS (Reflected Cross-site scripting) attack.

Related CVEs

Other vulnerabilities affecting the same vendor(s)