CVE-2023-25018: Rifartek IoT Wall

Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.

RIFARTEK IOT Wall transportation function has insufficient filtering for user input. An authenticated remote attacker with general user privilege can inject JavaScript to perform reflected XSS (Reflected Cross-site scripting) attack.

Affected products

Published 2023-03-27. Last modified 2026-06-17.