Cross-site scripting (XSS) vulnerability in Control Microsystems ClearSCADA 2005, 2007, and 2009 before R2.3 and R1.4, as used in SCX before 67 R4.5 and 68 R3.9, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References
Link | Resource |
---|---|
http://secunia.com/advisories/44955 | Third Party Advisory |
http://www.digitalbond.com/scadapedia/vulnerability-notes/control-microsystems-cross-site-scripting-vulnerability/ | Third Party Advisory |
http://www.osvdb.org/72987 | Broken Link |
http://www.us-cert.gov/control_systems/pdf/ICSA-10-314-01.pdf | Patch Third Party Advisory US Government Resource |
http://www.us-cert.gov/control_systems/pdf/ICSA-10-314-01A.pdf | Patch Third Party Advisory US Government Resource |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-10-03T16:15:06
Updated: 2022-10-03T16:15:06
Reserved: 2022-10-03T00:00:00
Link: CVE-2011-3144
JSON object: View
NVD Information
Status : Analyzed
Published: 2011-08-16T21:55:01.427
Modified: 2018-12-31T14:23:16.200
Link: CVE-2011-3144
JSON object: View
Redhat Information
No data.
CWE