Johnson Controls Metasys 14 和 Johnson Controls Metasys 15 在网页生成过程中存在输入中性化处理不当的漏洞,可导致跨站脚本(Cross-Site Scripting, XSS)攻击。 该漏洞影响以下版本: Metasys 14:早于 14.1.5 的版本 Metasys 15:早于 15.0.1 的版本
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Johnson Controls | Metasys 14 | < 14.1.5 |
affected |
| Johnson Controls | Metasys 15 | < 15.0.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Johnson Controls | Metasys 14 | 0 ~ 14.1.5 | - |
|
| Johnson Controls | Metasys 15 | 0 ~ 15.0.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet