An error in the URL handler of the VIDEOJET multi 4000...
Moderate severity
Unreviewed
Published
Oct 27, 2022
to the GitHub Advisory Database
•
Updated Jan 30, 2023
Description
Published by the National Vulnerability Database
Oct 27, 2022
Published to the GitHub Advisory Database
Oct 27, 2022
Last updated
Jan 30, 2023
An error in the URL handler of the VIDEOJET multi 4000 may lead to a reflected cross site scripting (XSS) in the web-based interface. An attacker with knowledge of the encoder address can send a crafted link to a user, which will execute JavaScript code in the context of the user.
References