Description
A cross-site scripting vulnerability in the Builder Component of Pilz PASvisu before 1.14.1 allows a local unauthenticated attacker to inject malicious javascript and gain full control over the device.
CVSS 7.8EPSS 0.21%Risque 0.79
Voir la source- Publication
- 2026-06-22 10:16:16
- Versions concernées
- <1.14.1
- Type
- Logiciel critique
- Vecteur
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H