CVE-2015-6477

NUCLEI

Nordex Control 2 Scada < 16 - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Wind Farm Portal application in Nordex Control 2 (NC2) SCADA 16 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Nuclei Templates (1)

Nordex NC2 - Cross-Site Scripting
MEDIUMVERIFIEDby geeknik,daffainfo
Shodan: http.title:"Nordex Control - Wind Farm Portal"

Scores

EPSS 0.3252
EPSS Percentile 96.9%

Details

CWE
CWE-79
Status published
Products (1)
nordex/nordex_control_2_scada < 16
Published Oct 18, 2015
Tracked Since Feb 18, 2026