This vulnerability could allow an attacker to send malicious Javascript code resulting in hijacking of the user’s cookie/session tokens, redirecting the user to a malicious webpage, and performing unintended browser action.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-29663 | This vulnerability could allow an attacker to send malicious Javascript code resulting in hijacking of the user’s cookie/session tokens, redirecting the user to a malicious webpage, and performing unintended browser action. |
Fixes
Solution
No solution given by the vendor.
Workaround
Advantech recommends users update to the latest version of WebAccess HMI Designer v2.1.11.0 Specific questions should be directed to Advantech customer service
References
| Link | Providers |
|---|---|
| https://us-cert.cisa.gov/ics/advisories/icsa-21-173-01 |
|
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-09-17T00:22:02.697Z
Reserved: 2021-10-18T00:00:00
Link: CVE-2021-42703
No data.
Status : Modified
Published: 2021-11-15T15:15:06.810
Modified: 2024-11-21T06:28:00.373
Link: CVE-2021-42703
No data.
OpenCVE Enrichment
No data.
EUVD