cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-5986,https://securityvulnerability.io/vulnerability/CVE-2023-5986,URL Redirection Vulnerability in Schneider Electric's Web Application,"A security vulnerability exists that allows for URL redirection to untrusted sites, potentially leading to cross-site scripting attacks. This occurs when attackers provide a URL-encoded input that manipulates the web application to redirect to malicious domains after the user successfully logs in. Such vulnerabilities can compromise user data and trust, making it essential for users to update their systems and ensure proper security measures are in place.",Schneider Electric,"Ecostruxure Power Monitoring Expert (pme),Ecostruxure Power Operation (epo) – Advanced Reporting And Dashboards Module,Ecostruxure Power Scada Operation (pso) - Advanced Reporting And Dashboards Module",8.2,HIGH,0.0006300000241026282,false,false,false,false,,false,false,2023-11-15T04:15:00.000Z,0 CVE-2023-5987,https://securityvulnerability.io/vulnerability/CVE-2023-5987,," A CWE-79 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) vulnerability that could cause a vulnerability leading to a cross site scripting condition where attackers can have a victim’s browser run arbitrary JavaScript when they visit a page containing the injected payload. ",Schneider Electric,"EcoStruxure Power Monitoring Expert (PME),EcoStruxure Power Operation (EPO) – Advanced Reporting and Dashboards Module,EcoStruxure Power SCADA Operation (PSO) - Advanced Reporting and Dashboards Module",6.1,MEDIUM,0.0006300000241026282,false,false,false,false,,false,false,2023-11-15T04:15:00.000Z,0