Vulnerabilities > CVE-2022-40190 - Unspecified vulnerability in Sauter-Controls Moduweb Firmware 2.7.1
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
SAUTER Controls moduWeb firmware version 2.7.1 is vulnerable to reflective cross-site scripting (XSS). The web application does not adequately sanitize request strings of malicious JavaScript. An attacker utilizing XSS could then execute malicious code in users’ browsers and steal sensitive information, including user credentials.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 1 |