CVE-2019-13923 PUBLISHED CVSS 9.600000381469727 CRITICAL

A vulnerability has been identified in IE/WSN-PA Link WirelessHART Gateway (All versions). The integrated configuration web server of the affected device could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into accessing a malicious link. User interaction is required for a successful exploitation. The user must be logged into the web interface in order for the exploitation to succeed. At the stage of publishing this security advisory no public exploitation is known.

EPSS 0.42% · 61.5th percentile

Risk Scores

CVSS v3.1
9.600000381469727
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
EPSS Score
0.42%
61.5th percentile

Affected Products

VendorProductVersions
siemensie\/wsn-pa_link_wirelesshart_gateway_firmware
Siemens AGIE/WSN-PA Link WirelessHART GatewayAll versions

Timeline

References

Open in Interactive Console →