AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-23786

CRITICAL · CVSS 9.3 EPSS 0.79%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-02-14 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.3. Exploitation may require the attacker to be authenticated.

CVE
CVE-2024-23786
Severity
CRITICAL
CVSS
9.3
EPSS
0.79%

Original NVD Description

Cross-site scripting vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to execute an arbitrary script on the web browser of the user who is accessing the management page of the affected product.

Related CVEs

Other vulnerabilities affecting the same vendor(s)