Loading HuntDB...

GHSA-m9fg-jg2j-wc72

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could allow an authenticated attacker to view data, change settings, or impact availability of the software when the user visits a page containing the injected payload. Affected Product: EcoStruxure Power Monitoring Expert (Versions 2020 and prior)

Related CVEs

Key Information

GHSA ID
GHSA-m9fg-jg2j-wc72
Published
February 11, 2022 12:01 AM
Last Modified
February 11, 2022 12:01 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 30, 2025 6:36 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.