CVE-2023-0214 Information

Description

A cross-site scripting vulnerability in Skyhigh SWG in main releases 11.x prior to 11.2.6 10.x prior to 10.2.17 and controlled release 12.x prior to 12.0.1 allows a remote attacker to craft SWG-specific internal requests with URL paths to any third-party website causing arbitrary content to be injected into the response when accessed through SWG.

Reference

https://kcm.trellix.com/corporate/index?page=content&id=SB10393

Share on: