QID 590864
Date Published: 2022-08-12
QID 590864: Schneider Electric ConneXium Gateway TSXETG100 and PowerLogic Ethernet Gateway EGX100 (V2) Vulnerability (SEVD-2019-134-07)
Affected Product
TSXETG100
EGX100 all variants
EGX100SD
EGX100MG
EGX100SQD
EGX100SDR
EGX100M
EGX100MGAA
EGX100MGBA
EGX100MGBB
EGX100MGBC
ECI850 all variants
ECI850
ECI850MG
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
Cross-Site Scripting vulnerability exists allowing an attacker to send a specially crafted URL with an embedded script to a user that would then be executed within the context of that user.
Solution
Customers are advised to refer to CERT MITIGATIONS section SEVD-2019-134-07 for affected packages and patching details.
Vendor References
- SEVD-2019-134-07 -
www.se.com/ww/en/download/document/SEVD-2019-134-07/
CVEs related to QID 590864
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| SEVD-2019-134-07 |
|