Cross-Site Scripting Vulnerability in Siemens SIMATIC S7-1200 CPU
CVE-2014-2908

Currently unrated

Key Information:

Summary

A cross-site scripting (XSS) vulnerability exists in the integrated web server of Siemens SIMATIC S7-1200 CPU devices version 2.x and 3.x. This vulnerability allows remote attackers to inject arbitrary web scripts or HTML, potentially compromising the security of the affected systems. Exploitation of this vulnerability can lead to unauthorized actions by the attacker, requiring immediate attention and mitigation to prevent malicious activities.

References

EPSS Score

46% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.