CVE-2023-31301: Sesami Cash Point & Transport Optimizer
Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.
Stored Cross Site Scripting (XSS) Vulnerability in Sesami Cash Point & Transport Optimizer (CPTO) version 6.3.8.6 (#718), allows remote attackers to execute arbitrary code and obtain sensitive information via the Username field of the login form and application log.
Affected products
- Sesami Cash Point & Transport Optimizer: version 6.3.8.6.718 only
Published 2023-12-29. Last modified 2026-06-17.