First published: Thu Jan 03 2019(Updated: )
Pluto Safety PLC Gateway Ethernet devices in ABB GATE-E1 and GATE-E2 all versions allows an unauthenticated attacker using the administrative web interface to insert an HTML/Javascript payload into any of the device properties, which may allow an attacker to display/execute the payload in a visitor browser.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Abb Gate-e1 Firmware | ||
ABB GATE-E1 | ||
Abb Gate-e2 Firmware | ||
Abb Gate-e2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.