CVE-2018-7834: Schneider Electric TSXETG100 Firmware

Medium severity, CVSS 6.1. EPSS: 0.8% chance of exploitation in the next 30 days.

A CWE-79 Cross-Site Scripting vulnerability exists in all versions of the TSXETG100 allowing an attacker to send a specially crafted URL with an embedded script to a user that would then be executed within the context of that user.

Affected products

Published 2019-05-22. Last modified 2026-06-17.