CVE-2017-16843: Vonage Vdv-23 Firmware

Medium severity, CVSS 5.4. EPSS: 1.5% chance of exploitation in the next 30 days.

Vonage VDV-23 115 3.2.11-0.9.40 devices have stored XSS via the NewKeyword or NewDomain field to /goform/RgParentalBasic.

Affected products

  • Vonage Vdv-23 Firmware: version 3.2.11-0.9.40 only

Published 2017-11-16. Last modified 2026-06-17.