CVE-2023-2266: Selinc Sel-411l Firmware

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

An Improper neutralization of input during web page generation in the Schweitzer Engineering Laboratories SEL-411L could allow an attacker to generate cross-site scripting based attacks against an authorized and authenticated user. See product Instruction Manual Appendix A dated 20230830 for more details.

Affected products

  • Selinc Sel-411l Firmware: from r118-v0, before r118-v4 (fixed in r118-v4); from r119-v0, before r119-v5 (fixed in r119-v5); from r120-v0, before r120-v6 (fixed in r120-v6); from r121-v0, before r121-v3 (fixed in r121-v3); from r122-v0, before r122-v3 (fixed in r122-v3); from r123-v0, before r123-v3 (fixed in r123-v3); …

Published 2023-11-30. Last modified 2026-06-17.