CVE-2023-54343

QWE DL 2.0.1 mobile web application contains a persistent input validation vulnerability allowing remote attackers to inject malicious script code through path parameter manipulation. Attackers can exploit the vulnerability to execute persistent cross-site scripting attacks, potentially leading to session hijacking and application module manipulation.
Configurations

No configuration.

History

No history.

Information

Published : 2026-02-01 13:15

Updated : 2026-02-03 16:44


NVD link : CVE-2023-54343

Mitre link : CVE-2023-54343

CVE.ORG link : CVE-2023-54343


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')