CVE-2021-27436
EUVD-2021-1419018.03.2021, 22:15
WebAccess/SCADA Versions 9.0 and prior is vulnerable to cross-site scripting, which may allow an attacker to send malicious JavaScript code to an unsuspecting user, which could result in hijacking of the user’s cookie/session tokens, redirecting the user to a malicious webpage and performing unintended browser actions.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| advantech | webaccess\/scada | 𝑥 ≤ 9.0 |
𝑥
= Vulnerable software versions