PT-2018-10581 · Siemens · Teamcenter

Jefferey Hanssen

+1

·

Published

2018-07-09

·

Updated

2019-10-09

·

CVE-2018-11450

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Siemens PLM Software TEAMCENTER version 9.1.2.5
Description A reflected Cross-Site-Scripting (XSS) issue has been identified. This allows an attacker to insert html/javascript code and alter the login portal page if a user visits a crafted URL.
Recommendations For version 9.1.2.5, update to version 9.1.3 or newer to resolve the issue.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-11450

Affected Products

Teamcenter