CVE-2024-6528
11.07.2024, 09:15
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site
Scripting') vulnerability exists that could cause a vulnerability leading to a cross-site scripting
condition where attackers can have a victims browser run arbitrary JavaScript when they visit a
page containing the injected payload.| Vendor | Product | Version |
|---|---|---|
| schneider-electric | modicon_m241_firmware | * |
| schneider-electric | modicon_m251_firmware | * |
| schneider-electric | modicon_m258_firmware | * |
| schneider-electric | modicon_m262_firmware | * |
| schneider-electric | modicon_lmc058_firmware | * |
𝑥
= Vulnerable software versions