CVE-2023-25018: Rifartek IoT Wall
Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.
RIFARTEK IOT Wall transportation function has insufficient filtering for user input. An authenticated remote attacker with general user privilege can inject JavaScript to perform reflected XSS (Reflected Cross-site scripting) attack.
Affected products
- Rifartek IoT Wall: version 22 only
Published 2023-03-27. Last modified 2026-06-17.