Vulnerability Details CVE-2023-33534
A Cross-Site Request Forgery (CSRF) in Guanzhou Tozed Kangwei Intelligent Technology ZLTS10G software version S10G_3.11.6 allows attackers to takeover user accounts via sending a crafted POST request to /goform/goform_set_cmd_process.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 29.4%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-33534
-
cpe:2.3:h:sztozed:zlt_s10g:-
-
cpe:2.3:o:sztozed:zlt_s10g_firmware:3.11.6