O develops network management and surveillance products, with identified vulnerabilities centered on its Milesight platform. The observed exposure reflects web application input-handling weaknesses, particularly cross-site scripting flaws in HTML tag neutralization. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by O over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-24497MEDIUM Cross-site scripting (xss) vulnerabilities exist in the requestHandlers.js detail_device functionality of Milesight VPN v2.0.2. A specially-crafted HTTP request can lead to arbitra | Jul 6, 2023 | 4.7 | 16 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by O.
Media articles that mention a CVE ID that affects a product developed by O — matched by CVE ID, not by vendor name.