CVE-2023-24496 | Milesight VPN up to 2.0.2 requestHandlers.js detail_device Name cross site scripting (TALOS-2023-1704)
A vulnerability identified as problematic has been detected in Milesight VPN up to 2.0.2. The impacted element is the function detail_device of the file requestHandlers.js. The manipulation of the argument Name leads to basic cross site scripting.
This vulnerability is uniquely identified as CVE-2023-24496. The attack is possible to be carried out remotely. No exploit exists.