CVE-2012-0233: XSS
Published Feb 21, 2012
·Updated
Cross-site scripting (XSS) vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via a malformed URL.
Affected Software
2 affected components
Advantech Advantech WebAccess<=6.0
Advantech Advantech WebAccess=5.0
Event History
Feb 21, 2012
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-0233?
CVE-2012-0233 has been identified with a medium severity rating due to its potential for exploitation via cross-site scripting.
2
How do I fix CVE-2012-0233?
To fix CVE-2012-0233, upgrade Advantech WebAccess to version 7.0 or later to mitigate the XSS vulnerability.
3
What software versions are affected by CVE-2012-0233?
CVE-2012-0233 affects Advantech WebAccess versions prior to 7.0, specifically including versions 5.0 and 6.0.
4
Who can exploit the vulnerability in CVE-2012-0233?
Remote attackers can exploit CVE-2012-0233 by injecting arbitrary web scripts or HTML through malformed URLs.
5
What type of vulnerability is CVE-2012-0233?
CVE-2012-0233 is classified as a cross-site scripting (XSS) vulnerability.