CVE-2024-6528
11.07.2024, 09:15
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause a vulnerability leading to a cross-site scripting condition where attackers can have a victims browser run arbitrary JavaScript when they visit a page containing the injected payload.
Vendor | Product | Version |
---|---|---|
schneider-electric | modicon_m241_firmware | * |
schneider-electric | modicon_m251_firmware | * |
schneider-electric | modicon_m258_firmware | * |
schneider-electric | modicon_m262_firmware | * |
schneider-electric | modicon_lmc058_firmware | * |
𝑥
= Vulnerable software versions