Back to search
CVE-2024-9414
Published: Oct 17, 2024
Modified: Oct 17, 2024
PUBLISHED
Description
In LAquis SCADA version 4.7.1.511, a cross-site scripting vulnerability could allow an attacker to inject arbitrary code into a web page. This could allow an attacker to steal cookies, redirect users, or perform unauthorized actions.
| Vendor | Product | Versions |
|---|---|---|
LCDS - Leão Consultoria e Desenvolvimento de Sistemas Ltda ME | LAquis SCADA | affected 4.7.1.511 |
Weaknesses (CWE)
References
https://www.cisa.gov/news-events/ics-advisories/icsa-24-291-02
government-resource
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now