3.5
CVSSv2

CVE-2014-2370

Published: 24/07/2014 Updated: 08/10/2015
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx up to and including 8.68x allows remote authenticated users to inject arbitrary web script or HTML via crafted data.

Vulnerable Product Search on Vulmon Subscribe to Product

omron ns_series_system_program_firmware 8.1

omron ns_series_system_program_firmware 8.68

omron ns10_hmi_terminal -

omron ns5_hmi_terminal -

omron ns15_hmi_terminal -

omron ns12_hmi_terminal -

omron ns8_hmi_terminal -