We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-33893



Description

Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are vulnerable to XSS when displaying the logs due to improper input sanitization. This is fixed in version 21.2s10 and 22.1s3.

Reserved 2024-04-28 | Published 2024-08-02 | Updated 2024-10-30 | Assigner mitre

References

www.ewon.biz/products/cosy/ewon-cosy-wifi

www.hms-networks.com/cyber-security

hmsnetworks.blob.core.windows.net/...sy--vulnerabilities.pdf

blog.syss.com/...-a-secure-industrial-remote-access-gateway/

cve.org (CVE-2024-33893)

nvd.nist.gov (CVE-2024-33893)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-33893

Support options

Helpdesk Chat, Email, Knowledgebase
Telegram Chat
Subscribe to our newsletter to learn more about our work.