CVE-2018-4842

CVE-2018-4842

A vulnerability has been identified in SCALANCE X-200 IRT (All versions < V5.4.1), SCALANCE X300 (All versions). A remote, authenticated attacker with access to the configuration web server could be able to store script code on the web site, if the HRP redundancy option is set. This code could be executed in the web browser of victims visiting this web site (XSS), affecting its confidentiality, integrity and availability. User interaction is required for successful exploitation, as the user needs to visit the manipulated web site.

Source: CVE-2018-4842

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다