What the vulnerability does

01Description

Reflected cross-site scripting (non-persistent) in SCADA WebServer (Versions prior to 2.03.0001) could allow an attacker to send a crafted URL that contains JavaScript, which can be reflected off the web application to the victim's browser.

Key dates

02Disclosure timeline

December 4, 2018 CVE published
August 5, 2024 Record updated

Related vulnerabilities

04Related CVE