4.3
CVSSv2

CVE-2015-1179

Published: 26/01/2015 Updated: 09/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in data_point_details.shtm in Mango Automation 2.4.0 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) dpid, (2) dpxid, or (3) pid parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

infinite automation systems mango automation

Exploits

Mango Automation SCADA/HMI version 240 suffers from a cross site scripting vulnerability ...