CVE-2014-5411: Schneider Electric SCADA Expert ClearSCADA Cross-site Scripting
Multiple cross-site scripting (XSS) vulnerabilities in Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R3 through 2014 R1 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2014-5411?
CVE-2014-5411 is rated as a moderate severity vulnerability due to its potential for exploitation through XSS attacks.
How do I fix CVE-2014-5411?
To fix CVE-2014-5411, update your Schneider Electric StruxureWare SCADA Expert ClearSCADA software to the latest patched version.
Who is affected by CVE-2014-5411?
CVE-2014-5411 affects users of Schneider Electric StruxureWare SCADA Expert ClearSCADA versions between 2010 R3 and 2014 R1.
What attacks can be executed due to CVE-2014-5411?
CVE-2014-5411 allows remote authenticated users to execute cross-site scripting attacks by injecting arbitrary web scripts or HTML.
Is CVE-2014-5411 a common vulnerability?
CVE-2014-5411 is recognized as a common vulnerability, particularly in systems involving SCADA and industrial control technologies.