Cross-site scripting (XSS) vulnerability in the web server in Rockwell Automation Allen-Bradley CompactLogix 1769-L* before 28.011+ allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Project Subscriptions

Vendors Products
Rockwellautomation Subscribe
Compactlogix 1756-en2f Series A Subscribe
Compactlogix 1756-en2f Series A Firmware Subscribe
Compactlogix 1756-en2f Series B Subscribe
Compactlogix 1756-en2f Series B Firmware Subscribe
Compactlogix 1756-en2t Series A Subscribe
Compactlogix 1756-en2t Series A Firmware Subscribe
Compactlogix 1756-en2t Series B Subscribe
Compactlogix 1756-en2t Series B Firmware Subscribe
Compactlogix 1756-en2t Series C Subscribe
Compactlogix 1756-en2t Series C Firmware Subscribe
Compactlogix 1756-en2t Series D Subscribe
Compactlogix 1756-en2t Series D Firmware Subscribe
Compactlogix 1756-en2tr Series A Subscribe
Compactlogix 1756-en2tr Series A Firmware Subscribe
Compactlogix 1756-en2tr Series B Subscribe
Compactlogix 1756-en2tr Series B Firmware Subscribe
Compactlogix 1756-en3tr Series A Subscribe
Compactlogix 1756-en3tr Series A Firmware Subscribe
Compactlogix 1769-l16er-bb1b Subscribe
Compactlogix 1769-l16er-bb1b Firmware Subscribe
Compactlogix 1769-l18er-bb1b Subscribe
Compactlogix 1769-l18er-bb1b Firmware Subscribe
Compactlogix 1769-l18erm-bb1b Subscribe
Compactlogix 1769-l18erm-bb1b Firmware Subscribe
Compactlogix 1769-l23e-qb1b Subscribe
Compactlogix 1769-l23e-qb1b Firmware Subscribe
Compactlogix 1769-l23e-qbfc1b Subscribe
Compactlogix 1769-l23e-qbfc1b Firmware Subscribe
Compactlogix 1769-l24er-qb1b Subscribe
Compactlogix 1769-l24er-qb1b Firmware Subscribe
Compactlogix 1769-l24er-qbfc1b Subscribe
Compactlogix 1769-l24er-qbfc1b Firmware Subscribe
Compactlogix 1769-l27erm-qbfc1b Subscribe
Compactlogix 1769-l27erm-qbfc1b Firmware Subscribe
Compactlogix 1769-l30er Subscribe
Compactlogix 1769-l30er-nse Subscribe
Compactlogix 1769-l30er-nse Firmware Subscribe
Compactlogix 1769-l30er Firmware Subscribe
Compactlogix 1769-l30erm Subscribe
Compactlogix 1769-l30erm Firmware Subscribe
Compactlogix 1769-l33er Subscribe
Compactlogix 1769-l33er Firmware Subscribe
Compactlogix 1769-l33erm Subscribe
Compactlogix 1769-l33erm Firmware Subscribe
Compactlogix 1769-l36erm Subscribe
Compactlogix 1769-l36erm Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2016-3363 Cross-site scripting (XSS) vulnerability in the web server in Rockwell Automation Allen-Bradley CompactLogix 1769-L* before 28.011+ allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-05T23:24:48.329Z

Reserved: 2016-02-09T00:00:00

Link: CVE-2016-2279

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2016-03-02T11:59:03.723

Modified: 2025-04-12T10:46:40.837

Link: CVE-2016-2279

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses