Description
PSI GridConnect GmbH Telecontrol Gateway and Smart Telecontrol Unit family, IEC104 Security Proxy versions Telecontrol Gateway 3G Versions 4.2.21, 5.0.27, 5.1.19, 6.0.16 and prior, and Telecontrol Gateway XS-MU Versions 4.2.21, 5.0.27, 5.1.19, 6.0.16 and prior, and Telecontrol Gateway VM Versions 4.2.21, 5.0.27, 5.1.19, 6.0.16 and prior, and Smart Telecontrol Unit TCG Versions 5.0.27, 5.1.19, 6.0.16 and prior, and IEC104 Security Proxy Version 2.2.10 and prior The web application browser interprets input as active HTML, JavaScript, or VBScript, which could allow an attacker to execute arbitrary code.
Published: 2019-03-05
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-16087 PSI GridConnect GmbH Telecontrol Gateway and Smart Telecontrol Unit family, IEC104 Security Proxy versions Telecontrol Gateway 3G Versions 4.2.21, 5.0.27, 5.1.19, 6.0.16 and prior, and Telecontrol Gateway XS-MU Versions 4.2.21, 5.0.27, 5.1.19, 6.0.16 and prior, and Telecontrol Gateway VM Versions 4.2.21, 5.0.27, 5.1.19, 6.0.16 and prior, and Smart Telecontrol Unit TCG Versions 5.0.27, 5.1.19, 6.0.16 and prior, and IEC104 Security Proxy Version 2.2.10 and prior The web application browser interprets input as active HTML, JavaScript, or VBScript, which could allow an attacker to execute arbitrary code.
History

No history.

Subscriptions

Psigridconnect Iec104 Security Proxy Iec104 Security Proxy Firmware Smart Telecontrol Unit Tcg Smart Telecontrol Unit Tcg Firmware Telecontrol Gateway 3g Telecontrol Gateway 3g Firmware Telecontrol Gateway Vm Telecontrol Gateway Vm Firmware Telecontrol Gateway Xs-mu Telecontrol Gateway Xs-mu Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-09-16T23:10:35.249Z

Reserved: 2019-01-22T00:00:00.000Z

Link: CVE-2019-6528

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-03-05T20:29:00.407

Modified: 2024-11-21T04:46:38.030

Link: CVE-2019-6528

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses