The configuration backend of the web-based management is vulnerable to reflected XSS (Cross-Site Scripting) attacks that targets the users browser. This leads to a limited impact of confidentiality and integrity but no impact of availability.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Wago
Subscribe
|
751-9301
Subscribe
751-9301 Firmware
Subscribe
752-8303\/8000-002
Subscribe
752-8303\/8000-002 Firmware
Subscribe
Pfc100
Subscribe
Pfc100 Firmware
Subscribe
Pfc200
Subscribe
Pfc200 Firmware
Subscribe
Touch Panel 600 Advanced
Subscribe
Touch Panel 600 Advanced Firmware
Subscribe
Touch Panel 600 Marine
Subscribe
Touch Panel 600 Marine Firmware
Subscribe
Touch Panel 600 Standard
Subscribe
Touch Panel 600 Standard Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-48052 | The configuration backend of the web-based management is vulnerable to reflected XSS (Cross-Site Scripting) attacks that targets the users browser. This leads to a limited impact of confidentiality and integrity but no impact of availability. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://cert.vde.com/en/advisories/VDE-2022-060/ |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2024-08-03T14:09:56.545Z
Reserved: 2022-11-10T09:46:59.079Z
Link: CVE-2022-45137
No data.
Status : Modified
Published: 2023-02-27T15:15:11.203
Modified: 2024-11-21T07:28:49.723
Link: CVE-2022-45137
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD