PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
CVE

CVE-2022-23397

6.1
CVSSmedium
Exploitable remotely over the internet · no authentication required · user interaction needed.
Description

The Cedar Gate EZ-NET portal 6.5.5 6.8.0 Internet portal has a call to display messages to users which does not properly sanitize data sent in through a URL parameter. This leads to a Reflected Cross-Site Scripting vulnerability. NOTE: the vendor disputes this because the ado.im reference has "no clear steps of reproduction."

Attack Vector
Network
Privileges Req.
None
User Interaction
Required
Updated Sep 18, 2026View on NVD →
S4E scanner
mediumWeb Vulnerabilities~10 seconds

Cedar Gate EZ-NET <= 6.8.0 - Cross-Site Scripting

The Cedar Gate EZ-NET portal 6.5.5 6.8.0 Internet portal has a call to display messages to users which does not properly sanitize data sent in through a URL parameter. This leads to a Reflected Cross-Site Scripting vulnerability. References: https://ado.im/cedar-gate-ez-net https://nvd.nist.gov/vuln/detail/CVE-2022-23397

Used 2.9k times · url

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →