VDB
BDU%3A2017-01821
BDU%3A2017-01821
PUBLISHED
CVSS 10 CRITICAL
Уязвимость средства автономного конфигурирования системы визуализации и управления «умным домом» U.motion Builder, связанная с недостатками ограничения имени пути к каталогу и позволяющая нарушителю выполнить произвольный код
Risk Scores
CVSS 2.0
10
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Schneider Electric | U.motion Builder |
Timeline
- Aug 18, 2017 CVE Published
- Mar 23, 2021 CVE Updated
References
- http://www.zerodayinitiative.com/advisories/ZDI-17-374/ url
- https://ics-cert.us-cert.gov/advisories/ICSA-17-180-02 url
- https://www.checkpoint.com/defense/advisories/public/2017/cpai-2017-0554.html url
- http://www.schneider-electric.com/en/download/document/SEVD-2017-178-01/ url
- http://www.securityfocus.com/bid/99344 url
- http://telussecuritylabs.com/threats/show/TSL20170612-08 url
- http://www.securitylab.ru/vulnerability/487061.php url
- https://www.cybersecurity-help.cz/vdb/SB2017063007 url