Back to Database
Status published
Unknown
CVE-2023-38574
Open redirect vulnerability in VI Web Client prior to 7.9.6...
Vulnerability Description
Open redirect vulnerability in VI Web Client prior to 7.9.6 allows a remote unauthenticated attacker to redirect users to arbitrary web sites and conduct phishing attacks via a specially crafted URL.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-38574
Credits & Attribution
No credits recorded in the NVD database.
References
More from i-PRO Co., Ltd.
View All →CVE-2025-36513
Cross-site request forgery vulnerability exists in surveillance cameras provided by...
Medium
5.1
CVE-2025-32730
Use of hard-coded cryptographic key vulnerability in i-PRO Configuration Tool...
Medium
6.8
CVE-2023-40705
Stored cross-site scripting vulnerability in Map setting page of VI...
Unknown
0
CVE-2023-40535
Stored cross-site scripting vulnerability in View setting page of VI...
Unknown
0
CVE-2023-39938
Reflected cross-site scripting vulnerability in VI Web Client prior to...
Unknown
0
Affected Vendor
i-PRO Co., Ltd.
View all reports →Affected Software
VI Web Client
Vulnerable Versions:
prior to 7.9.6
Timeline
Official Publish:
September 5th, 2023
Last Modified:
September 30th, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
No vector data available
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.