Логотип exploitDog
bind:CVE-2018-13809
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-13809

Количество 3

Количество 3

nvd логотип

CVE-2018-13809

почти 7 лет назад

A vulnerability has been identified in CP 1604 (All versions), CP 1616 (All versions). The integrated web server of the affected CP devices could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into following a malicious link. User interaction is required for a successful exploitation. At the time of advisory publication no public exploitation of this vulnerability was known.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-vx28-rjrq-hg36

больше 3 лет назад

A vulnerability has been identified in CP 1604 (All versions), CP 1616 (All versions). The integrated web server of the affected CP devices could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into following a malicious link. User interaction is required for a successful exploitation. At the time of advisory publication no public exploitation of this vulnerability was known.

CVSS3: 6.1
EPSS: Низкий
fstec логотип

BDU:2019-03004

около 8 лет назад

Уязвимость микропрограммного обеспечения коммуникационного модуля Siemens CP, связанная с неприятием мер по защите структуры веб-страницы, позволяющая нарушителю произвести межсайтовую сценарную атаку

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-13809

A vulnerability has been identified in CP 1604 (All versions), CP 1616 (All versions). The integrated web server of the affected CP devices could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into following a malicious link. User interaction is required for a successful exploitation. At the time of advisory publication no public exploitation of this vulnerability was known.

CVSS3: 6.1
0%
Низкий
почти 7 лет назад
github логотип
GHSA-vx28-rjrq-hg36

A vulnerability has been identified in CP 1604 (All versions), CP 1616 (All versions). The integrated web server of the affected CP devices could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into following a malicious link. User interaction is required for a successful exploitation. At the time of advisory publication no public exploitation of this vulnerability was known.

CVSS3: 6.1
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2019-03004

Уязвимость микропрограммного обеспечения коммуникационного модуля Siemens CP, связанная с неприятием мер по защите структуры веб-страницы, позволяющая нарушителю произвести межсайтовую сценарную атаку

CVSS3: 6.1
0%
Низкий
около 8 лет назад

Уязвимостей на страницу