Vulnerabilities > Rockwellautomation > 1734 Aentr Point I O Dual Port Network Adaptor Series C Firmware > 6.011

DATE CVE VULNERABILITY TITLE RISK
2022-02-24 CVE-2020-14502 Cross-site Scripting vulnerability in Rockwellautomation products
The web interface of the 1734-AENTR communication module is vulnerable to stored XSS.
4.3
2022-02-24 CVE-2020-14504 Improper Authentication vulnerability in Rockwellautomation products
The web interface of the 1734-AENTR communication module mishandles authentication for HTTP POST requests.
network
low complexity
rockwellautomation CWE-287
5.0