CVE-2015-6477
NUCLEINordex Control 2 Scada < 16 - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in the Wind Farm Portal application in Nordex Control 2 (NC2) SCADA 16 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Nuclei Templates (1)
Nordex NC2 - Cross-Site Scripting
MEDIUMVERIFIEDby geeknik,daffainfo
Shodan:
http.title:"Nordex Control - Wind Farm Portal"
References (3)
Scores
EPSS
0.3252
EPSS Percentile
96.9%
Details
CWE
CWE-79
Status
published
Products (1)
nordex/nordex_control_2_scada
< 16
Published
Oct 18, 2015
Tracked Since
Feb 18, 2026