CVE-2023-40461
The ACEManager
component of ALEOS 4.16 and earlier allows an
authenticated user
with Administrator privileges to acce
The ACEManager component of ALEOS 4.16 and earlier allows an authenticated user with Administrator privileges to access a file upload field which does not fully validate the file name, creating a Stored Cross-Site Scripting condition.
HIGH · CVSS 8.1
EPSS 0.0001
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0