Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not properly validate input in the configuration interface. This could allow an authenticated attacker to place persistent XSS attacks to perform arbitrary actions in the name of a logged user which accesses the affected views.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
Siemens SICAM 跨站脚本漏洞
Vulnerability Description
Siemens SICAM是德国西门子(Siemens)公司的一个综合变电站自动化系统。 Siemens SICAM P850 and SICAM P855 存在跨站脚本漏洞,该漏洞源于受影响的设备无法正确验证配置界面中的输入。经过身份验证的攻击者利用该漏洞可进行跨站脚本(XSS)攻击以执行任意操作。
CVSS Information
N/A
Vulnerability Type
N/A