Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to an authenticated reflected POST Cross-Site Scripting
Advisories
Source ID Title
EUVD EUVD EUVD-2020-4814 Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to an authenticated reflected POST Cross-Site Scripting
Fixes

Solution

In order to prevent the exploitation of the reported vulnerabilities, we recommend that the affected units be updated with the following three firmware packages: U-Boot bootloader version 1.36 or newer System image version 1.52 or newer Application base version 1.6.11 or newer


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published:

Updated: 2024-09-17T00:40:47.141Z

Reserved: 2020-04-30T00:00:00

Link: CVE-2020-12512

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-01-22T19:15:12.097

Modified: 2024-11-21T04:59:50.433

Link: CVE-2020-12512

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.