CVE-2014-2370

Omron NS5-NS15 HMI <8.68x - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to inject arbitrary web script or HTML via crafted data.

Scores

EPSS 0.0056
EPSS Percentile 68.1%

Details

CWE
CWE-79
Status published
Products (12)
omron/ns_series_system_program_firmware
omron/ns_series_system_program_firmware
omron/ns10_hmi_terminal
omron/ns12_hmi_terminal
omron/ns15_hmi_terminal
omron/ns5_hmi_terminal
omron/ns8_hmi_terminal
Omron/NS15 < 8.68x
Omron/NS12 < 8.68x
Omron/NS10 < 8.68x
... and 2 more
Published Jul 24, 2014
Tracked Since Feb 18, 2026