CVE-2023-46964: Hillstonenet Sc-6000-e3960 Firmware

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

Cross Site Scripting (XSS) vulnerability in Hillstone Next Generation FireWall SG-6000-e3960 v.5.5 allows a remote attacker to execute arbitrary code via the use front-end filtering instead of back-end filtering.

Affected products

Published 2023-11-05. Last modified 2026-06-17.