First published: Thu Sep 18 2014(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R3 through 2014 R1 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Aveva Clearscada | =2010-r3 | |
Aveva Clearscada | =2010-r3.1 | |
Aveva Clearscada | =2013-r1 | |
Aveva Clearscada | =2013-r1.1 | |
Aveva Clearscada | =2013-r1.1a | |
Aveva Clearscada | =2013-r1.2 | |
Aveva Clearscada | =2013-r2 | |
Schneider-electric Scada Expert Clearscada | =2013-r2.1 | |
Schneider-electric Scada Expert Clearscada | =2014-r1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.