Showing 1 vulnerability on this page for TF2000-HMI-Server

Signals CISA KEV Ransomware Nuclei
Beckhoff Automation vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Beckhoff: XSS Vulnerability in TwinCAT 3 HMI Server

An high privileged remote attacker can inject arbitrary content into the custom CSS field on the affected devices due to improper neutralization of input during web page generation ('Cross-site Scripting').

CWE-79Jan 20, 2026
CVSS5.5v3.1EPSS0.207%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX