Arteche saTECH BCU Reflected Cross-Site Scripting Vulnerability
Vulnerability
A reflected cross-site scripting vulnerability has been identified in Arteche's saTECH BCU firmware version 2.1.3. This vulnerability allows an attacker to inject malicious code into the legitimate website of the affected device, which is then executed in the context of the victim's browser. The attack can only be carried out after the cookie is set.
Impact
Exploitation of this vulnerability allows for reflected cross-site scripting, where injected malicious code is executed in the context of the user's browser.
Remediation
Users can upgrade to saTECH BCU firmware version 2.2.1 to address this vulnerability.
Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
0.4exploitability
4.2remediation
7.7relevance
0.0threat
0.0urgency
2.9incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
