CVE-2024-46886 Information

Description

The web server of affected devices does not properly validate input that is used for a user redirection. This could allow an attacker to make the server redirect the legitimate user to an attacker-chosen URL. For a successful exploit the legitimate user must actively click on an attacker-crafted link.

Reference

https://cert-portal.siemens.com/productcert/html/ssa-876787.html

Share on: