GHSA-qqr2-jjq7-8fwxMediumCVSS 6.1

A CWE-79 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting)...

Published
May 24, 2022
Last Modified
May 28, 2026

🔗 CVE IDs covered (1)

📋 Description

A CWE-79 Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) vulnerability exists in EcoStruxure Building Operation WebStation V2.0 - V3.1 that could cause an attacker to inject HTML and JavaScript code into the user's browser.

🔗 References (3)