Vulnerability Details CVE-2019-18233
In Advantech Spectre RT Industrial Routers ERT351 5.1.3 and prior, the affected product does not neutralize special characters in the error response, allowing attackers to use a reflected XSS attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 50.6%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2019-18233
-
cpe:2.3:h:advantech:spectre_rt_ert351:-
-
cpe:2.3:o:advantech:spectre_rt_ert351_firmware:-
-
cpe:2.3:o:advantech:spectre_rt_ert351_firmware:5.1.3