Sploitus

CVE-2023-43118

1 known exploit for CVE-2023-43118

Cross Site Request Forgery (CSRF) vulnerability in Chalet application in Extreme Networks Switch Engine (EXOS) before 32.5.1.5, fixed in 31.7.2 and 32.5.1.5 allows attackers to run arbitrary code and cause other unspecified impacts via /jsonrpc API.

Extremenetworks Exos
< 31.7.2, 32.5.1.5
CVSS 3.1
8.8 HIGH
EPSS
0.3% (19th percentile)
Weakness
CWE-352
NVD status
Modified
Published
2023-10-16
CVE-2023-43118 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2023-43118

Proof-of-concept code and exploit modules indexed by Sploitus