VDB

CNVD-2022-18772

CNVD-2022-18772 PUBLISHED

Schneider Electric APC Smart-UPS SMC Series等都是法国施耐德电气(Schneider Electric)公司的产品。Schneider Electric APC Smart-UPS SMC Series是一款适用于单台服务器、低功耗网络和销售点 (POS) 设备的入门级 UPS。Schneider Electric APC Smart-UPS SMT Series是一款服务器、销售点、路由器、交换机、集线器和其他网络设备的线路交互式电源保护。Schneider Electric APC Smart-UPS SRT Series是一款高密度、 真正的双转换在线电源保护。 Schneider Electric多款产品存在身份验证错误漏洞,攻击者可利用该漏洞上传恶意固件,随意修改不间断电源的行为。

Affected Products

VendorProductVersions
Schneider Electric SMT Series ID=18 <=UPS 09.8
Schneider Electric SMX Series ID=23 <=UPS 07.0
Schneider Electric SMT Series ID=1015 <=UPS 04.5
Schneider Electric SMX Series ID=1031 <=UPS 03.1
Schneider Electric SRT Series ID=1021 <=UPS 12.2
Schneider Electric SMX Series ID=20 <=UPS 10.2
Schneider Electric SRT Series ID=1002/1014 <=UPSa05.2
Schneider Electric SMTL Series ID=1026 <=UPS 02.9
Schneider Electric SRT Series ID=1020 <=UPS 10.4
Schneider Electric SMC Series ID=1007 <=UPS 11.0
Schneider Electric SCL Series ID=1029 <=UPS 02.5
Schneider Electric SRT Series ID=1010/1019/1025 <=UPS 08.3
Schneider Electric SCL Series ID=1036 <=UPS 02.5
Schneider Electric SCL Series ID=1030 <=UPS 02.5
Schneider Electric SCL Series ID=1037 <=UPS 03.1
Schneider Electric SMT Series ID=1031 <=UPS 03.1
Schneider Electric SRT Series ID=1001/1013 <=UPS 05.1
Schneider Electric SMC Series ID=1018 <=UPS 04.2
Schneider Electric SMC Series ID=1041 <=UPS 01.1
Schneider Electric SMT Series ID=1040 <=UPS 01.2

…and 2 more

Timeline

  • Mar 10, 2022 CVE ID Reserved
  • Mar 12, 2022 CVE Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›