PT-2018-10581 · Siemens · Teamcenter
Jefferey Hanssen
+1
·
Published
2018-07-09
·
Updated
2019-10-09
·
CVE-2018-11450
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Siemens PLM Software TEAMCENTER version 9.1.2.5
Description
A reflected Cross-Site-Scripting (XSS) issue has been identified. This allows an attacker to insert html/javascript code and alter the login portal page if a user visits a crafted URL.
Recommendations
For version 9.1.2.5, update to version 9.1.3 or newer to resolve the issue.
Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Teamcenter