Vulnerabilities
Vulnerable Software
Xarrow:  >> Xarrow  >> 7.2  Security Vulnerabilities
xArrow SCADA versions 7.2 and prior is vulnerable to cross-site scripting due to parameter ‘bdate’ of the resource xhisvalue.htm, which may allow an unauthorized attacker to execute arbitrary code.
CVSS Score
6.1
EPSS Score
0.003
Published
2022-05-16
xArrow SCADA versions 7.2 and prior is vulnerable to cross-site scripting due to parameter ‘edate’ of the resource xhisalarm.htm, which may allow an unauthorized attacker to execute arbitrary code.
CVSS Score
6.1
EPSS Score
0.003
Published
2022-05-16
xArrow SCADA versions 7.2 and prior permits unvalidated registry keys to be run with application-level privileges.
CVSS Score
5.6
EPSS Score
0.001
Published
2022-05-16


Contact Us

Shodan ® - All rights reserved