CWE-200: Information Exposure vulnerability exists that could cause disclosure of credentials when a specially crafted message is sent to the device.
An attacker sends a specially crafted network message to the device (accessible without authentication and from any network location). Due to a CWE-200 (Information Exposure) class vulnerability, the device discloses stored access credentials. The entire attack requires no privileges or user interaction.
An attacker can obtain access credentials to the device, which consequently may lead to full takeover of the device, unauthorized access to the industrial network, and violation of system confidentiality, integrity, and availability.
Apply patches available from the manufacturer in accordance with security bulletin SEVD-2024-191-01 available on the Schneider Electric website. Until the patch is implemented, it is recommended to restrict network access to the device only to trusted hosts and segment the industrial network.
Schneider Electric WHC-5918A and its firmware — specific versions indicated in manufacturer references (SEVD-2024-191-01)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HSchneider Electric Whc 5918a
HWSchneider-Electricall versionsSchneider Electric Whc 5918a Firmware
OSSchneider-Electricall versions
Related vulnerabilities
SQL Injection z RCE w Schneider Electric U.Motion Builder 1.3.4
Brak autoryzacji w Schneider Electric EcoStruxure IT Gateway (CVSS 10.0)
Out-of-bounds Write umożliwiający Auth Bypass w Schneider Electric Sage RTU
Path Traversal w Schneider Electric Spacelogic C-Bus Toolkit
RCE przez deserializację niezaufanych danych w produktach Schneider Electric EcoStruxure