NA

CVE-2023-2876

Published: 13/06/2023 Updated: 26/06/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Sensitive Cookie Without 'HttpOnly' Flag vulnerability in ABB REX640 PCL1 (firmware modules), ABB REX640 PCL2 (Firmware modules), ABB REX640 PCL3 (firmware modules) allows Cross-Site Scripting (XSS).This issue affects REX640 PCL1: from 1.0;0 prior to 1.0.8; REX640 PCL2: from 1.0;0 prior to 1.1.4; REX640 PCL3: from 1.0;0 prior to 1.2.1.

Vulnerable Product Search on Vulmon Subscribe to Product

abb rex640_pcl1_firmware

abb rex640_pcl2_firmware

abb rex640_pcl3_firmware