CVE-2014-6616: Softing Fg-x00 Profibus Firmware
Medium severity, CVSS 4.3. EPSS: 1.9% chance of exploitation in the next 30 days.
Cross-site scripting (XSS) vulnerability in Softing FG-100 PROFIBUS Single Channel (FG-100-PB) with firmware FG-x00-PB_V2.02.0.00 allows remote attackers to inject arbitrary web script or HTML via the DEVICE_NAME parameter to cgi-bin/CFGhttp/.
Affected products
- Softing Fg-x00 Profibus Firmware: version 2.02.0.00 only
Published 2015-08-31. Last modified 2026-06-17.