Description

Vulnerability in Xiexe XSOverlay before build 647 allows non-local websites to send the malicious commands to the WebSocket API, resulting in the arbitrary code execution.

INFO

Published Date :

2024-08-15T00:00:00.000Z

Last Modified :

2024-08-15T20:12:44.155Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-23168 vulnerability.

Vendors Products
Xiexe
  • Xsoverlay
REFERENCES

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact