CVE-2014-2908
25.04.2014, 05:12
Cross-site scripting (XSS) vulnerability in the integrated web server on Siemens SIMATIC S7-1200 CPU devices 2.x and 3.x allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Vendor | Product | Version |
---|---|---|
siemens | simatic_s7_cpu_1200_firmware | 2.0 |
siemens | simatic_s7_cpu_1200_firmware | 3.0 |
siemens | simatic_s7_cpu_1200_firmware | 3.0.2 |
siemens | simatic_s7_cpu-1211c | - |
siemens | simatic_s7_cpu_1212c | - |
siemens | simatic_s7_cpu_1214c | - |
siemens | simatic_s7_cpu_1215c | - |
siemens | simatic_s7_cpu_1217c | - |
𝑥
= Vulnerable software versions
References