Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2023-22654
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Client-side enforcement of server-side security issue exists in T&D Corporation and ESPEC MIC CORP. data logger products, which may lead to an arbitrary script execution on a logged-in user's web browser. Affected products and versions are as follows: T&D Corporation data logger products (TR-71W/72W all firmware versions, RTR-5W all firmware versions, WDR-7 all firmware versions, WDR-3 all firmware versions, and WS-2 all firmware versions), and ESPEC MIC CORP. data logger products (RT-12N/RS-12N all firmware versions, RT-22BN all firmware versions, and TEU-12N all firmware versions).
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
ESPEC MIC多款产品跨站脚本漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
ESPEC MIC RT-12N等都是ESPEC MIC公司的一个环境传感器。 ESPEC MIC 多款产品存在安全漏洞,攻击者利用该漏洞可以在登录用户的 Web 浏览器上执行任意脚本,以下产品和版本受到影响:(ESPEC MIC:RS-12N 所有固件版本、RT-12N所有固件版本、RT-22BN所有固件版本、TEU-12N 所有固件版本);(T&D:RTR-5W所有固件版本、TR-71W所有固件版本、TR-72W所有固件版本、WDR-3 所有固件版本、WDR-7 所有固件版本、WS-2 所有固件版本。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
T&D Corporation and ESPEC MIC CORP.T&D Corporation and ESPEC MIC CORP. data logger products T&D Corporation data logger products (TR-71W/72W all firmware versions, RTR-5W all firmware versions, WDR-7 all firmware versions, WDR-3 all firmware versions, and WS-2 all firmware versions), ESPEC MIC CORP. data logger products (RT-12N/RS-12N all firmwa -
II. Public POCs for CVE-2023-22654
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2023-22654
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2023-22654

No comments yet


Leave a comment