Improper Neutralization of Input During Web Page Generation (’Cross-site Scripting’) in RDT400 in SICK APU allows an unprivileged remote attacker to run arbitrary code in the clientsbrowser via injecting code into the website.
No PoCs from references.
- https://github.com/fkie-cad/nvd-json-data-feeds