Cross-site scripting (XSS) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to inject arbitrary web script or HTML via crafted data.
Metrics
Affected Vendors & Products
References
History
Mon, 06 Oct 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | Omron NS Series HMI Improper Neutralization of Input During Web Page Generation | |
References |
| |
Metrics |
cvssV2_0
|
cvssV2_0
|

Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-10-06T18:01:21.608Z
Reserved: 2014-03-13T00:00:00
Link: CVE-2014-2370

No data.

Status : Deferred
Published: 2014-07-24T14:55:07.317
Modified: 2025-10-06T18:15:48.843
Link: CVE-2014-2370

No data.

No data.