Cross-Site Scripting Vulnerability in Siemens SIMATIC S7-1200 CPU
CVE-2014-2908
Currently unrated
Key Information:
- Vendor
- Siemens
- Vendor
- CVE Published:
- 25 April 2014
Summary
A cross-site scripting (XSS) vulnerability exists in the integrated web server of Siemens SIMATIC S7-1200 CPU devices version 2.x and 3.x. This vulnerability allows remote attackers to inject arbitrary web scripts or HTML, potentially compromising the security of the affected systems. Exploitation of this vulnerability can lead to unauthorized actions by the attacker, requiring immediate attention and mitigation to prevent malicious activities.
References
EPSS Score
46% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved