CVE-2023-5451
Severity CVSS v4.0:
Pending analysis
Type:
CWE-79
Cross-Site Scripting (XSS)
Publication date:
04/03/2024
Last modified:
15/04/2026
Description
Forcepoint<br />
NGFW Security Management Center Management Server has SMC Downloads <br />
optional feature to offer standalone Management Client downloads and ECA<br />
configuration downloads.<br />
<br />
Improper Neutralization of Input During Web Page Generation (&#39;Cross-site Scripting&#39;) vulnerability in Forcepoint Next Generation Firewall Security Management Center (SMC Downloads feature) allows Reflected XSS.<br />
<br />
This issue affects Next Generation Firewall Security Management Center : before 6.10.13, from 6.11.0 before 7.1.2.<br />
<br />
Impact
Base Score 3.x
6.10
Severity 3.x
MEDIUM



