CVE-2026-32963

SD-330AC and AMC Manager provided by silex technology, Inc. contain a reflected cross-site scripting vulnerability. When a user logs in to the affected device and access some crafted web page, arbitrary script may be executed on the user's browser.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:silextechnology:sd-330ac_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:silextechnology:sd-330ac:-:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:silextechnology:amc_manager:*:*:*:*:*:*:*:*

History

22 Apr 2026, 17:09

Type Values Removed Values Added
First Time Silextechnology amc Manager
Silextechnology sd-330ac Firmware
Silextechnology sd-330ac
Silextechnology
CPE cpe:2.3:a:silextechnology:amc_manager:*:*:*:*:*:*:*:*
cpe:2.3:h:silextechnology:sd-330ac:-:*:*:*:*:*:*:*
cpe:2.3:o:silextechnology:sd-330ac_firmware:*:*:*:*:*:*:*:*
References () https://jvn.jp/en/vu/JVNVU94271449/ - () https://jvn.jp/en/vu/JVNVU94271449/ - Third Party Advisory
References () https://www.silex.jp/support/security-advisories/2026-001 - () https://www.silex.jp/support/security-advisories/2026-001 - Vendor Advisory
References () https://www.silex.jp/support/security-advisories/en/2026-001 - () https://www.silex.jp/support/security-advisories/en/2026-001 - Vendor Advisory

20 Apr 2026, 04:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-20 04:16

Updated : 2026-04-22 17:09


NVD link : CVE-2026-32963

Mitre link : CVE-2026-32963

CVE.ORG link : CVE-2026-32963


JSON object : View

Products Affected

silextechnology

  • sd-330ac_firmware
  • sd-330ac
  • amc_manager
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')