ZeroHour

CVE-2020-25158

CVSS 3.1
6.1 medium
EPSS
<1%p56
Published
()
Modified
Description

A reflected cross-site scripting (XSS) vulnerability in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and the Data module compactplus Versions A10 and A11 allows remote attackers to inject arbitrary web script or HTML into various locations.

Vendors
bbraun
Products
datamodule compactplus, spacecom
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.