CVE-2024-11304 : SEH COMPUTERTECHNIK UTNSERVER PRO/UTNSERVER PROMAX/INU-100 UP TO 20.1.22 CROSS SITE SCRIPTING

Description

Missing input validation in the SEH Computertechnik utnserver Pro, SEH Computertechnik utnserver ProMAX, SEH Computertechnik INU-100 web-interface allows stored Cross-Site Scripting (XSS). This issue affects utnserver Pro, utnserver ProMAX, INU-100 version 20.1.22 and below.

References

https://cyberdanube.com/en/en-st-polten-uas-stored-cross-site-scripting-in-seh-utnserver-pro/index.html

For More Information

CVERecord

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2024-52565 : SIEMENS TECNOMATIX PLANT SIMULATION PRIOR 2302.0018/2404.0007 WRL FILE OUT-OF-BOUNDS WRITE

CVE-2024-52565 : SIEMENS TECNOMATIX PLANT SIMULATION PRIOR 2302.0018/2404.0007 WRL FILE OUT-OF-BOUNDS WRITE

Description A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0018), Tecnomatix Plant Simulation V2404 (All

CVE-2024-9474 : PALO ALTO NETWORKS PAN-OS MANAGEMENT WEB INTERFACE OS COMMAND INJECTION

CVE-2024-9474 : PALO ALTO NETWORKS PAN-OS MANAGEMENT WEB INTERFACE OS COMMAND INJECTION

Description A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management

CVE-2024-11304 : SEH COMPUTERTECHNIK UTNSERVER PRO/UTNSERVER PROMAX/INU-100 UP TO 20.1.22 CROSS SITE SCRIPTING

CVE-2024-11304 : SEH COMPUTERTECHNIK UTNSERVER PRO/UTNSERVER PROMAX/INU-100 UP TO 20.1.22 CROSS SITE SCRIPTING

Description Missing input validation in the SEH Computertechnik utnserver Pro, SEH Computertechnik utnserver ProMAX, SEH Computertechnik INU-100 web-interface allows stored