Lucene search

K
cvelistSiemensCVELIST:CVE-2017-2683
HistoryFeb 27, 2017 - 11:00 a.m.

CVE-2017-2683

2017-02-2711:00:00
CWE-79
siemens
www.cve.org
4

AI Score

7.2

Confidence

High

EPSS

0.001

Percentile

49.4%

A non-privileged user of the Siemens web application RUGGEDCOM NMS < V1.2 on port 8080/TCP and 8081/TCP could perform a persistent Cross-Site Scripting (XSS) attack, potentially resulting in obtaining administrative permissions.

CNA Affected

[
  {
    "product": "RUGGEDCOM NMS All versions < V2.1 (Windows and Linux)",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "RUGGEDCOM NMS All versions < V2.1 (Windows and Linux)"
      }
    ]
  }
]

AI Score

7.2

Confidence

High

EPSS

0.001

Percentile

49.4%

Related for CVELIST:CVE-2017-2683