Pluto Safety PLC Gateway Ethernet devices in ABB GATE-E1 and GATE-E2 all versions allows an unauthenticated attacker using the administrative web interface to insert an HTML/Javascript payload into any of the device properties, which may allow an malicious user to display/execute the payload in a visitor browser.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
abb gate-e1_firmware |
||
abb gate-e2_firmware |