CVE-2020-7481
23.03.2020, 20:15
A CWE-79:Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists Andover Continuum (All versions), which could enable a successful Cross-site Scripting (XSS attack) when using the products' web server.
Vendor | Product | Version |
---|---|---|
schneider-electric | andover_continuum_9680_firmware | * |
schneider-electric | andover_continuum_5740_firmware | * |
schneider-electric | andover_continuum_5720_firmware | * |
schneider-electric | andover_continuum_bcx4040_firmware | * |
schneider-electric | andover_continuum_bcx9640_firmware | * |
schneider-electric | andover_continuum_9900_firmware | * |
schneider-electric | andover_continuum_9940_firmware | * |
schneider-electric | andover_continuum_9941_firmware | * |
schneider-electric | andover_continuum_9924_firmware | * |
schneider-electric | andover_continuum_9702_firmware | * |
schneider-electric | andover_continuum_9200_firmware | * |
𝑥
= Vulnerable software versions