Medium severity6.1NVD Advisory· Published Mar 21, 2019· Updated Jun 17, 2026
CVE-2018-19694
CVE-2018-19694
Description
HMS Industrial Networks Netbiter WS100 3.30.5 devices and previous have reflected XSS in the login form.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10- cpe:2.3:o:hms-networks:netbiter_ec150_firmware:*:*:*:*:*:*:*:*Range: <=1.40.0
- cpe:2.3:o:hms-networks:netbiter_ec250_firmware:*:*:*:*:*:*:*:*Range: <=1.40.0
- cpe:2.3:o:hms-networks:netbiter_lc310_firmware:*:*:*:*:*:*:*:*Range: <=3.30.5
- cpe:2.3:o:hms-networks:netbiter_lc310_thingworx_firmware:*:*:*:*:*:*:*:*Range: <=2.00.07
- cpe:2.3:o:hms-networks:netbiter_lc350_firmware:*:*:*:*:*:*:*:*Range: <=2.00.07
- cpe:2.3:o:hms-networks:netbiter_lc350_thingworx_firmware:*:*:*:*:*:*:*:*Range: <=2.00.07
- cpe:2.3:o:hms-networks:netbiter_ws100_firmware:*:*:*:*:*:*:*:*Range: <=3.30.5
- cpe:2.3:o:hms-networks:netbiter_ws200_firmware:*:*:*:*:*:*:*:*Range: <=3.30.4
- Range: <=3.30.5
- Range: <=3.30.5
Patches
Vulnerability mechanics
References
4- www.hms-networks.com/docs/librariesprovider6/cybersecurity/hms-security-advisory-2018-12-04-001-ec150-ec250-lc310-lc350-ws100-ws200-cve-2018-19694.pdfnvdPatchVendor Advisory
- packetstormsecurity.com/files/151119/HMS-Netbiter-WS100-3.30.5-Cross-Site-Scripting.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/bugtraq/2019/Jan/9nvdExploitMailing ListThird Party Advisory
- www.netbiter.com/productsnvdProductThird Party Advisory
News mentions
0No linked articles in our index yet.