CVE Published: 20/10/2020 |
CVE Updated: 17/09/2024 |
CVE Year: 2020 Source: icscert |
Vendor: General Electric |
Product: Reason S20 Ethernet Switch Status : PUBLISHED
CVE-2020-16246 Description
The affected Reason S20 Ethernet Switch is vulnerable to cross-site scripting (XSS), which may allow attackers to trick users into following a link or navigating to a page that posts a malicious JavaScript statement to the vulnerable site, causing the malicious JavaScript to be rendered by the site and executed by the victim client.