CVE-2022-23312
09.02.2022, 16:15
A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP9 Security Patch 1). The integrated web application "Online Help" in affected product contains a Cross-Site Scripting (XSS) vulnerability that could be exploited if unsuspecting users are tricked into accessing a malicious link.
Vendor | Product | Version |
---|---|---|
siemens | spectrum_power_4 | 𝑥 < 4.70 |
siemens | spectrum_power_4 | 4.70 |
siemens | spectrum_power_4 | 4.70:sp7 |
siemens | spectrum_power_4 | 4.70:sp8 |
𝑥
= Vulnerable software versions