Skip to content

CVE-2014-5397

Cross-site scripting (XSS) vulnerability in Schneider Electric Wonderware Information Server (WIS) Portal 4.0 SP1 through 5.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0040 (0.4%)
Percentil: 60.5%
EPSS: 2026-05-06

Afecta

invensys:wonderware_information_server

Descripción técnica

Cross-site scripting (XSS) vulnerability in Schneider Electric Wonderware Information Server (WIS) Portal 4.0 SP1 through 5.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Publicada: 28/8/2014, 1:55:03
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo