logo

CRIL Identifies ControlByWeb XSS Vulnerability CVE-2023-6333

ID: 591d49b3-7fb5-52be-92af-3db9bfa0e9c7

STIX ID: report--591d49b3-7fb5-52be-92af-3db9bfa0e9c7

Feed Name: Cyble Blog

Threat Score
70/100

Date Published: 2024-10-25

Date Updated: 2026-07-17

...
...

Cyble Research & Intelligence Labs disclosed a Cross-Site Scripting vulnerability (CVE-2023-6333) affecting ControlByWeb X-301 and X-332 Ethernet I/O modules used in industrial and critical infrastructure environments. The report notes coordinated disclosure with the vendor and submission to CISA (VINCE), emphasizes the high-severity classification and potential for physical and operational impacts if exploited, and recommends proactive asset scanning and threat intelligence to mitigate risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.