Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability has been identified in Desigo Insight (All versions). The device does not properly set the X-Frame-Options HTTP Header which makes it vulnerable to Clickjacking attacks. This could allow an unauthenticated attacker to retrieve or modify data in the context of a legitimate user by tricking that user to click on a website controlled by the attacker.
CVSS Information
N/A
Vulnerability Type
不当限制渲染UI层或帧
Vulnerability Title
Siemens DESIGO INSIGHT 安全漏洞
Vulnerability Description
Siemens DESIGO INSIGHT是德国西门子(Siemens)公司的一款热网监控软件平台。该软件可实现换热站的远程监控,并上传至调度中心,还具有报警记录、日志记录、趋势记录和报表功能。。 Desigo Insight 所有版本存在安全漏洞,攻击者可利用该漏洞诱使该用户单击攻击者控制的网站来在合法用户的上下文中检索或修改数据。
CVSS Information
N/A
Vulnerability Type
N/A