CVE-2021-37208 | Siemens RUGGEDCOM ROS M2100 up to 5.5.x Web Server Configuration Page cross site scripting (ssa-256353)
A vulnerability was found in Siemens RUGGEDCOM ROS M2100, RUGGEDCOM ROS RMC8388, RUGGEDCOM ROS RS416v2, RUGGEDCOM ROS RS900G, RUGGEDCOM ROS RS900G, RUGGEDCOM ROS RSG2100, RUGGEDCOM ROS RSG2100P, RUGGEDCOM ROS RSG2100P, RUGGEDCOM ROS RSG2288, RUGGEDCOM ROS RSG2300, RUGGEDCOM ROS RSG2300P, RUGGEDCOM ROS RSG2488, RUGGEDCOM ROS RSG900, RUGGEDCOM ROS RSG920P, RUGGEDCOM ROS RSL910, RUGGEDCOM ROS RST2228, RUGGEDCOM ROS RST916C and RUGGEDCOM ROS RST916P up to 5.5.x. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Web Server Configuration Page. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2021-37208. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.