CVE-2017-11175: Siemens Fin Stack

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

In J2 Innovations FIN Stack 4.0, the authentication webform is vulnerable to reflected XSS via the query string to /login.

Affected products

  • Siemens Fin Stack: version 4.0 only

Published 2018-07-05. Last modified 2026-06-17.