CVE-2026-82781: Medium severity vulnerability
Published Sep 14, 2026
·Updated
Cross-site scripting vulnerability exists in CONPROSYS nano Series. If this vulnerability is exploited, an arbitrary script may be executed on a logged-in user's web browser.
Event History
Sep 14, 2026
CVE Published
via MITRE·06:41 AM
Data Sourced
via MITRE·06:41 AM
DescriptionSeverity
Frequently Asked Questions
1
What does an attacker need to exploit this issue?
The attacker needs network access and low-level privileges, and a logged-in user must interact with the malicious content. Successful exploitation can execute arbitrary script in that user's browser.
2
What is the likely impact on an affected user's session?
The vulnerability can affect confidentiality and integrity at a low level, and its scope may extend beyond the vulnerable component. No availability impact is indicated by the supplied severity vector.