← back
CVE-2014-2370

Omron NS Series HMI Improper Neutralization of Input During Web Page Generation

CVSS 4 EPSS 1.4%CWE-79
Cross-site scripting (XSS) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to inject arbitrary web script or HTML via crafted data.
AV:N/AC:L/Au:S/C:N/I:P/A:N

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →