Cross-site scripting (XSS) vulnerability in the HMI web application in Siemens WinCC (TIA Portal) 11 allows remote authenticated users to inject arbitrary web script or HTML via unspecified data.
References
Link | Resource |
---|---|
http://ics-cert.us-cert.gov/pdf/ICSA-13-079-03.pdf | US Government Resource |
http://www.siemens.com/corporate-technology/pool/de/forschungsfelder/siemens_security_advisory_ssa-212483.pdf | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: icscert
Published: 2022-10-03T16:15:05
Updated: 2022-10-03T16:15:05
Reserved: 2022-10-03T00:00:00
Link: CVE-2013-0672
JSON object: View
NVD Information
Status : Analyzed
Published: 2013-03-21T14:55:01.547
Modified: 2013-03-22T13:36:18.833
Link: CVE-2013-0672
JSON object: View
Redhat Information
No data.
CWE