Home Embedded Vulns General Vulns

CVE-2020-15793

MEDIUM 5.4

Our Analysis: Environment Specific

Our model has classified this vulnerability as relevant to Environment Specific Systems, helping your team prioritize efforts effectively.

Published Date October 15, 2020
Last Modified November 21, 2024
CVSS Vector Not Available

Description

A vulnerability has been identified in Desigo Insight (All versions). The device does not properly set the X-Frame-Options HTTP Header which makes it vulnerable to Clickjacking attacks. This could allow an unauthenticated attacker to retrieve or modify data in the context of a legitimate user by tricking that user to click on a website controlled by the attacker.

Potentially Affected Vendors