CVE-2015-6477: Nordex Control 2 Scada

Medium severity, CVSS 6.1. EPSS: 12% chance of exploitation in the next 30 days.

Multiple cross-site scripting (XSS) vulnerabilities in the Wind Farm Portal application in Nordex Control 2 (NC2) SCADA 16 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Affected products

  • Nordex Nordex Control 2 Scada: up to and including 16

Published 2015-10-18. Last modified 2026-06-17.