This vulnerability could allow an attacker to send malicious Javascript code resulting in hijacking of the user’s cookie/session tokens, redirecting the user to a malicious webpage, and performing unintended browser action.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-29663 This vulnerability could allow an attacker to send malicious Javascript code resulting in hijacking of the user’s cookie/session tokens, redirecting the user to a malicious webpage, and performing unintended browser action.
Fixes

Solution

No solution given by the vendor.


Workaround

Advantech recommends users update to the latest version of WebAccess HMI Designer v2.1.11.0 Specific questions should be directed to Advantech customer service

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-09-17T00:22:02.697Z

Reserved: 2021-10-18T00:00:00

Link: CVE-2021-42703

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-11-15T15:15:06.810

Modified: 2024-11-21T06:28:00.373

Link: CVE-2021-42703

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.