CVE-2022-23397: Cedargate Ez-Net Portal
Medium severity, CVSS 6.1. EPSS: 1% chance of exploitation in the next 30 days.
The Cedar Gate EZ-NET portal 6.5.5 6.8.0 Internet portal has a call to display messages to users which does not properly sanitize data sent in through a URL parameter. This leads to a Reflected Cross-Site Scripting vulnerability. NOTE: the vendor disputes this because the ado.im reference has "no clear steps of reproduction."
Affected products
- Cedargate Ez-Net Portal: version 6.5.5 only; version 6.6.3 only; version 6.7.0 only; version 6.8.0 only
Published 2022-03-04. Last modified 2026-06-17.