CVE-2018-6906
01.11.2018, 17:29
A persistent Cross Site Scripting (XSS) vulnerability in the Green Electronics RainMachine Mini-8 (2nd Generation) and Touch HD 12 web application allows an attacker to inject arbitrary JavaScript via the REST API.
Vendor | Product | Version |
---|---|---|
rainmachine | rainmachine_web_application | - |
𝑥
= Vulnerable software versions