Vulnerabilities (CVE)

Filtered by vendor I-pro Subscribe
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-39938 1 I-pro 1 Video Insight 2023-12-10 N/A 6.1 MEDIUM
Reflected cross-site scripting vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to inject an arbitrary script.
CVE-2023-40705 1 I-pro 1 Video Insight 2023-12-10 N/A 5.4 MEDIUM
Stored cross-site scripting vulnerability in Map setting page of VI Web Client prior to 7.9.6 allows a remote authenticated attacker to inject an arbitrary script.
CVE-2023-38574 1 I-pro 1 Video Insight 2023-12-10 N/A 6.1 MEDIUM
Open redirect vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to redirect users to arbitrary web sites and conduct phishing attacks via a specially crafted URL.
CVE-2023-40535 1 I-pro 1 Video Insight 2023-12-10 N/A 5.4 MEDIUM
Stored cross-site scripting vulnerability in View setting page of VI Web Client prior to 7.9.6 allows a remote authenticated attacker to inject an arbitrary script.