Vulnerabilities > Philips > IN Sight B120 37 > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-04-10 CVE-2015-2883 Cross-site Scripting vulnerability in Philips In.Sight B12037
Philips In.Sight B120/37 has XSS, related to the Weaved cloud web service, as demonstrated by the name parameter to deviceSettings.php or shareDevice.php.
network
low complexity
philips CWE-79
5.4