Security Advisory

CVE-2015-6461

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-03-21 18:17:48
Last updated 2024-08-06 07:22:21
Assigner icscert
CVSS score not scored
State PUBLISHED

Description

Remote file inclusion allows an attacker to craft a specific URL referencing the Schneider Electric Modicon BMXNOC0401, BMXNOE0100, BMXNOE0110, BMXNOE0110H, BMXNOR0200H, BMXP342020, BMXP342020H, BMXP342030, BMXP3420302, BMXP3420302H, or BMXP342030H PLC web server, which, when launched, will result in the browser redirecting to a remote file via a Java script loaded with the web page.