VYPR
Medium severity6.1NVD Advisory· Published Mar 10, 2020· Updated Jun 17, 2026

CVE-2020-7579

CVE-2020-7579

Description

A vulnerability has been identified in Spectrum Power™ 5 (All versions < v5.50 HF02). The web server could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into accessing a malicious link. User interaction is required for a successful exploitation. If deployed according to recommended system configuration, Siemens consideres the environmental vector as CR:L/IR:M/AR:H/MAV:A (4.1).

Affected products

4
  • cpe:2.3:a:siemens:spectrum_power_5:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:siemens:spectrum_power_5:*:*:*:*:*:*:*:*range: <=5.50
    • cpe:2.3:a:siemens:spectrum_power_5:5.50:hf01:*:*:*:*:*:*
  • Range: < v5.50 HF02
  • Siemens AG/Spectrum Power™ 5v5
    Range: All versions < v5.50 HF02

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.