Martem TELEM GW6 and GWM devices with firmware 2018.04.18-linux_4-01-601cb47 and prior allow improper sanitization of data over a Websocket which may allow cross-site scripting and client-side code execution with target user privileges.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2018-07-31T17:00:00Z
Updated: 2024-09-16T18:34:17.545Z
Reserved: 2018-05-01T00:00:00
Link: CVE-2018-10609
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-07-31T17:29:00.373
Modified: 2024-11-21T03:41:39.490
Link: CVE-2018-10609
Redhat
No data.