Description
A reflected Cross-Site-Scripting (XSS) vulnerability has been identified in Siemens PLM Software TEAMCENTER (V9.1.2.5). If a user visits the login portal through the URL crafted by the attacker, the attacker can insert html/javascript and thus alter/rewrite the login portal page. Siemens PLM Software TEAMCENTER V9.1.3 and newer are not affected.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-3481 | A reflected Cross-Site-Scripting (XSS) vulnerability has been identified in Siemens PLM Software TEAMCENTER (V9.1.2.5). If a user visits the login portal through the URL crafted by the attacker, the attacker can insert html/javascript and thus alter/rewrite the login portal page. Siemens PLM Software TEAMCENTER V9.1.3 and newer are not affected. |
References
History
No history.
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2024-09-16T21:04:28.705Z
Reserved: 2018-05-25T00:00:00.000Z
Link: CVE-2018-11450
No data.
Status : Modified
Published: 2018-07-09T20:29:00.910
Modified: 2024-11-21T03:43:23.597
Link: CVE-2018-11450
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD