Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause denial of service or unauthorized access to system information when interacting directly with a driver installed by Vijeo Designer or EcoStruxure Machine Expert
oryginał ENCVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HSchneider Electric Ecostruxure Machine Expert
APPSchneider-Electric< 2.0Schneider Electric Harmony Gk
HWSchneider-Electricwszystkie wersjeSchneider Electric Harmony Gto
HWSchneider-Electricwszystkie wersjeSchneider Electric Harmony Gtu
HWSchneider-Electricwszystkie wersjeSchneider Electric Harmony Gtux
HWSchneider-Electricwszystkie wersjeSchneider Electric Harmony Hmiscu
HWSchneider-Electricwszystkie wersjeSchneider Electric Harmony Sto
HWSchneider-Electricwszystkie wersjeSchneider Electric Harmony Stu
HWSchneider-Electricwszystkie wersjeSchneider Electric Vijeo Designer
APPSchneider-Electric< 6.2.11
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Tagi
DoS
CWE
Powiązane podatności
CVE-2021-22704CRITICAL9.1PL ✓ten sam produkt
Path Traversal w produktach Schneider Electric Harmony HMI via FTP
CVE-2020-7487CRITICAL9.8PL ✓ten sam produkt
Niewystarczająca weryfikacja autentyczności danych w sterownikach Schneider Electric Modicon
CVE-2020-7489CRITICAL9.8PL ✓ten sam produkt
Podatność Injection w oprogramowaniu Schneider Electric – podstawianie DLL
CVE-2024-8306HIGH7.8ten sam produkt
CWE-269: Improper Privilege Management vulnerability exists that could cause unauthorized access, loss of conf...
CVE-2021-22817HIGH7.8ten sam produkt
A CWE-276: Incorrect Default Permissions vulnerability exists that could cause unauthorized access to the base...