Inductive Automation Ignition Cross-Site Scripting (CVE-2023-38124)

Related Vulnerabilities: CVE-2023-38124  

Check Point Reference: CPAI-2023-0930 Date Published: 18 Apr 2024 Severity: High Last Updated: Thursday 18 April, 2024 Source: Industry Reference:CVE-2023-38124
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Inductive Automation Ignition prior to 8.1.26 Vulnerability Description A cross-site scripting vulnerability exists in Inductive Automation Ignition. Successful exploitation of this vulnerability would allow remote attackers to inject arbitrary web script into the affected system.