A stored cross-site scripting (XSS) issue was discovered in ControlByWeb X-320M-I Web-Enabled Instrumentation-Grade Data Acquisition module 1.05 with firmware revision v1.05. An authenticated user can inject arbitrary script via setup.html in the web interface.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-03-17T21:10:38

Updated: 2024-08-05T11:23:08.527Z

Reserved: 2018-10-31T00:00:00

Link: CVE-2018-18882

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-03-21T16:00:29.810

Modified: 2019-04-03T12:48:44.087

Link: CVE-2018-18882

cve-icon Redhat

No data.