Cross-site Scripting Vulnerability in Contec FX5000, FX4000, and FX3000 Series Products
CVE-2026-82763

4.8MEDIUM

Key Information:

Vendor
CVE Published:
14 September 2026

What is CVE-2026-82763?

A cross-site scripting (XSS) vulnerability exists in the Contec FX5000, FX4000, and FX3000 series products. This flaw allows an attacker to inject and execute arbitrary scripts on the web browsers of users who are logged in. Exploitation of this vulnerability could lead to unauthorized actions being taken on behalf of the user, potentially compromising sensitive information and the integrity of the application. It is imperative for users of these products to apply security best practices to mitigate any potential risks.

Affected Version(s)

FXA3000 0 < 1.20.00

FXA3000-[][] 0 < 1.20.00

FXA3020 0 < 1.20.00

References

CVSS V4

Score:
4.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.