Unrated severityNVD Advisory· Published Feb 9, 2022· Updated Aug 3, 2024
CVE-2022-23312
CVE-2022-23312
Description
A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP9 Security Patch 1). The integrated web application "Online Help" in affected product contains a Cross-Site Scripting (XSS) vulnerability that could be exploited if unsuspecting users are tricked into accessing a malicious link.
Affected products
2< V4.70 SP9 Security Patch 1+ 1 more
- (no CPE)range: < V4.70 SP9 Security Patch 1
- (no CPE)range: All versions < V4.70 SP9 Security Patch 1
Patches
Vulnerability mechanics
References
1- cert-portal.siemens.com/productcert/pdf/ssa-831168.pdfmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.