CVE-2023-47418: Zoneland o2oa
Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.
Remote Code Execution (RCE) vulnerability in o2oa version 8.1.2 and before, allows attackers to create a new interface in the service management function to execute JavaScript.
Affected products
- Zoneland o2oa: up to and including 8.1.2
Published 2023-11-30. Last modified 2026-06-17.