CVE-2012-0225: XSS
Cross-site scripting (XSS) vulnerability in Invensys Wonderware Information Server 4.0 SP1 and 4.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0225?
CVE-2012-0225 has a medium severity rating due to its potential for cross-site scripting attacks that could lead to unauthorized actions on behalf of users.
How do I fix CVE-2012-0225?
To fix CVE-2012-0225, ensure that you apply the latest patches or updates provided by Invensys for Wonderware Information Server.
What software is affected by CVE-2012-0225?
CVE-2012-0225 affects Invensys Wonderware Information Server version 4.0 SP1 and 4.5.
Can CVE-2012-0225 be exploited remotely?
Yes, CVE-2012-0225 can be exploited remotely, allowing attackers to inject arbitrary web scripts or HTML.
What are the potential impacts of CVE-2012-0225?
Exploitation of CVE-2012-0225 can lead to session hijacking, data theft, or defacement of web content.